We are using this solution in conjunction with others. We usually put both endpoint detection solutions in some of our desktops and in others, we have the Sophos desktop solution combined with Sophos firewall switches.
Network Engineer at a comms service provider with 10,001+ employees
Seamless integration, remote control access, high overall security protection
Pros and Cons
- "The most valuable aspect of this solution is the ability to interact with the firewall and workstations seamlessly to shut down the threats. Additionally, you are able to control the workstations remotely."
- "There is room for improvement in performance and upgrades."
What is our primary use case?
What is most valuable?
The most valuable aspect of this solution is the ability to interact with the firewall and workstations seamlessly to shut down the threats. Additionally, you are able to control the workstations remotely. This most robust solution out in the industry today.
There is a high level of protection to prevent both ransomware and malicious software from the exterior of the network, down to the workstations. The workstations are analyzed to prevent threats that come in through network packets, such as in email. You need to keep email secure because a lot of these malicious threats are coming in from email.
Nowadays, a lot of social interactions are through the internet and if somebody giving out passwords or is not keeping up with security best practices they could be vulnerable to attacks.
What needs improvement?
There is room for improvement in performance and upgrades.
For how long have I used the solution?
I have been using the solution for approximately one year.
Buyer's Guide
Sophos MDR
June 2026
Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,456 professionals have used our research since 2012.
What do I think about the stability of the solution?
The solution is very stable.
What do I think about the scalability of the solution?
I have found the scalability to be good. We do not have plans to increase usage in the near future.
How are customer service and support?
The technical support has been good, we had no problems.
How was the initial setup?
The installation was straightforward and the implementation took approximately three months.
What about the implementation team?
We have a team of three people that do the deployment and maintenance of the solution.
What's my experience with pricing, setup cost, and licensing?
The cost of the solution is based on how many users use it.
What other advice do I have?
My advice to others thinking about implementing this solution is to negotiate for a lower price and it is a benefit to have someone who understands firewalls and their basic implementation.
I would recommend this solution to those who want to have complete security protection.
I rate Sophos Managed Threat Response a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Good antivirus and firewall capabilities, and the collaborative support is helpful
Pros and Cons
- "The most valuable feature is threat hunting."
- "Overall, Sophos is working well in our organization and we plan to continue using it."
- "One of the limitations that we have found is with communications and the languages in different countries."
What is most valuable?
The most valuable feature is threat hunting.
One of the big advantages is that we can collaborate with Sophos' support, and they will show us the problems.
What needs improvement?
One of the limitations that we have found is with communications and the languages in different countries. In Vietnam, we are okay and it is not a big problem because we have a vendor, who is a Sophos partner.
For how long have I used the solution?
My company has been using Sophos Managed Threat Response for more than two years. It was installed before I joined the company.
What do I think about the scalability of the solution?
We have more than 1,000 users.
How are customer service and technical support?
The technical support is quite good, although sometimes the response time is quite long. Then again, maybe I'm a difficult customer.
Which solution did I use previously and why did I switch?
Prior to this, we used Sophos EDR but after that, we upgraded to the Managed Threat Response. It has additional benefits that we were interested in.
What other advice do I have?
Overall, Sophos is working well in our organization and we plan to continue using it. It is a good product and I recommend it because it is centralized and in my opinion, it is one of the best security products available on the market. It has both antivirus and firewall support.
I would rate this solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Sophos MDR
June 2026
Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,456 professionals have used our research since 2012.
Cyber Security Engineer, Pre-sales Engineer at Green Edge
Provides valuable data protection services and good scalability
Pros and Cons
- "The product’s most valuable feature is rapid response."
- "Sophos MDR’s pricing is the biggest factor that needs improvement per customers and technical professionals."
What is most valuable?
The product’s most valuable feature is rapid response. Most of the companies are targeted by ransomware attacks. Sophos MDR provides us with better data protection services than other providers.
What needs improvement?
Sophos MDR’s pricing is the biggest factor that needs improvement per customers and technical professionals. There could be a package or bundled subscription similar to Trend Micro. It will allow us to customize the package according to specific requirements.
For how long have I used the solution?
We have been using Sophos MDR for more than two years.
What do I think about the stability of the solution?
I rate the product’s stability an eight out of ten.
What do I think about the scalability of the solution?
The product is highly scalable. It is suitable for medium businesses. I rate its scalability an eight out of ten.
How was the initial setup?
The initial setup is easy. The deployment time depends on the availability of resources from the client's end. We can complete the process in a day if everything is set up properly.
What's my experience with pricing, setup cost, and licensing?
I rate Sophos MDR’s pricing a seven or eight out of ten. From a technical perspective, I understand that AI integration makes the product a little expensive. However, from customers’ perspective, it also needs to fit in their budgets.
What other advice do I have?
I rate Sophos MDR a ten out of ten. I advise others to go for it. With more experience working on it, they will understand why it is expensive.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer.
Cyber Security Consultant at GBS IT Services
An easy-to-scale solution with efficient technical support services
Pros and Cons
- "The solution is stable."
- "The solution is expensive for customers."
What is most valuable?
The solution's licensing plans are very flexible. Also, it has good performance.
What needs improvement?
The solution is expensive for customers. Its pricing could be better.
For how long have I used the solution?
We have been using the solution for the last six months.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is easy to scale. We have an enterprise client base.
How are customer service and support?
The solution's technical support is excellent.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used Rapid7 earlier. In comparison, Sophos has a flexible licensing and assurance part. It has good references from all over the world in terms of deployment.
How was the initial setup?
The solution's deployment takes one or two months to complete.
What about the implementation team?
A team from Sophos itself does the solution's implementation.
What's my experience with pricing, setup cost, and licensing?
The solution has subscription-based pricing plans.
What other advice do I have?
I rate the solution an eight out of ten. If you want to outsource security operations, you can look for Sophos MDR.
Disclosure: My company has a business relationship with this vendor other than being a customer. MSP
IT Systems Engineer at a tech consulting company with 11-50 employees
Consistent threat detection and protection with some room for reporting improvements
Pros and Cons
- "My customers have seen a return on investment with Sophos MDR because it has stopped several real-time compromises, which would have had a significant financial impact."
- "I have contacted Sophos MDR support, and their support is average. They are sometimes slow and don't always understand requests immediately."
What is our primary use case?
I am a partner and reseller working with Sophos MDR.
My customer's main use case for Sophos MDR is security.
My customers are regular small to medium businesses using Sophos MDR to help protect themselves from compromise.
What is most valuable?
For Sophos MDR features, we appreciate that they can automatically action a request based on the data they ingest from the endpoints, which can be handy sometimes.
The automatic request feature works by ingesting data from the endpoints, and if they detect something that appears to be a compromise, they can take action to block the request, assuming permission has been granted.
I find Sophos MDR to be very accurate in terms of threat detection and response.
Sophos MDR integrates with all the endpoints on the workstations and the firewalls.
Sophos MDR uses machine learning to enhance cybersecurity measures and help process all the data that it ingests into the data lake.
What needs improvement?
I don't have many suggestions for improvement in Sophos MDR as it performs quite well.
It would be beneficial to have the ability to pull a report of all incident responses within a tenant, with categorization and summarization capabilities. This would be particularly useful for sales to demonstrate effectiveness to new clients.
For how long have I used the solution?
I have been working with Sophos MDR for approximately four years now.
What was my experience with deployment of the solution?
I haven't faced any challenges or difficulties with Sophos MDR; it has been very smooth.
What do I think about the stability of the solution?
I have no complaints regarding stability; it is stable.
What do I think about the scalability of the solution?
Sophos MDR is definitely scalable enough for my customers and easy to scale.
How are customer service and support?
I have contacted Sophos MDR support, and their support is average.
I would rate their support at around six out of ten.
They are sometimes slow and don't always understand requests immediately.
Their response time needs improvement.
How would you rate customer service and support?
How was the initial setup?
Setting up Sophos MDR is straightforward.
On a scale of one to ten, I would rate the setup at eight, indicating it is fairly easy.
What about the implementation team?
Deploying Sophos MDR takes approximately a few hours to complete.
What was our ROI?
My customers have seen a return on investment with Sophos MDR because it has stopped several real-time compromises, which would have had a significant financial impact.
What other advice do I have?
I believe Sophos MDR pricing is reasonable for my customers.
I would recommend those planning to use Sophos MDR to consider what financial impact a compromise could have on their organization and compare that with the cost of the product.
I rate Sophos MDR an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Download our free Sophos MDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2026
Product Categories
Managed Detection and Response (MDR)Popular Comparisons
IBM Security QRadar
Huntress Managed EDR
Intercept X Endpoint
CrowdStrike Falcon Complete MDR
SentinelOne Wayfinder Threat Detection and Response
Arctic Wolf Managed Detection and Response
Adlumin Security Operations
Red Canary
Secureworks Taegis Managed XDR / MDR
Binary Defense MDR
CompassOne by Blackpoint Cyber
ConnectWise SIEM
Alert Logic MDR
Bitdefender MDR
Field Effect MDR
Buyer's Guide
Download our free Sophos MDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- How do you estimate ROI of a Managed Detection and Response (MDR) solution?
- When evaluating Managed Detection and Response (MDR), what aspect do you think is the most important to look for?
- Which solution do you prefer: Optiv Managed Security Services or eSentire?
- Why is Managed Detection and Response (MDR) important for companies?

















