I think the RED appliances and APs make a difference, and add value to Sophos. Also, it is easy to configure, robust and is a stable appliance. The licensing is great, because you don't have to pay the same license fee for a standby appliance.
Support Engineer at a tech services company with 51-200 employees
RED appliances and APs make a difference, however, performance is suffering under high traffic usage.
What is most valuable?
How has it helped my organization?
Actually, we were not used to firewalls in our organization, but I was working at a distributor previously so I had a chance to do many demos. The customers like its GUI because it's easy to manage and RED takes attention of the customer which has distributed locations like shops, cafes, fast food stores etc.
What needs improvement?
They should have more powerful appliances. The appliances throughput and performance is suffering under high traffic usage. Also, I think they need better appliances for enterprise and high end customers.
For how long have I used the solution?
I've used it for one year.
Buyer's Guide
Sophos UTM
August 2025

Learn what your peers think about Sophos UTM. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,370 professionals have used our research since 2012.
What was my experience with deployment of the solution?
Because we have local laws about logging, we had to get permission to develop a logging mechanism. Also, we had lots of requests to improve URL filtering categories.
What do I think about the stability of the solution?
I had an issue with transparent mode in a demo, but mostly it is a very stable appliance and software.
What do I think about the scalability of the solution?
Sophos has a sizing guide which is a great during the planning phase in ensuring you are getting the sizing right. I have used it many times when I preparing customer demands. I haven't had any problems yet.
How are customer service and support?
Customer Service:
I was working with Sophos' Germany office, and they always supported me. It was really great working with them.
Technical Support:They're 6/10. I had many cases, but they don't like to do a remote session immediately. To be honest, I have worked with better support teams from other vendors,.
How was the initial setup?
It is very easy.
What about the implementation team?
I implemented it but got help from the vendor when I got stuck wit something. They are great.
What other advice do I have?
It is great solution for customers who have small, branch offices. I would advise you get Sophos for distributed locations (with RED and APs).
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Consultant at a tech services company with 51-200 employees
Sophos's web filtering & SMTP filtering is much better than SonicWall which we previously used.
What is most valuable?
Firewall and Web Protection
Advanced Threat Protection is a good "dashboard" feature to see if there is any network issues
How has it helped my organization?
Its a key point of keeping your network secure which once setup requires minimal ongoing monitoring. Also this unit can act as the whole security suite so everything in your network is protected.
What needs improvement?
Its identification of users without the need of setting up Proxies or Identity software could be better, that is probably the trickiest section to setup.
For how long have I used the solution?
2 years
What was my experience with deployment of the solution?
No issues other than ensuring what has been configured matches the requirement of the company/client.
What do I think about the stability of the solution?
The only stability issue we have encountered was an update caused the unit to over process things. Everything kept running but it did slow down Internet access because of this.
What do I think about the scalability of the solution?
I have only done basic High Availability setup which is very good but not Scalable solutions. However, as long as you follow the sizing guides and get the right UTM for the company there has been no issues.
How are customer service and technical support?
Customer Service:
Excellent
Technical Support:Not outstanding but I have noticed significant improvements over the last 12 months
Which solution did I use previously and why did I switch?
We used to use SonicWall. I still think its a good product though its web filtering and SMTP filtering were no where near as good as Sophos UTM. The reason we switched was the partner relationship between Dell and the IT Solutions company soured.
How was the initial setup?
You can setup the unit in simple mode and get 90% of what you want done. That is very straightforward
You can also setup each component manually. This requires understanding of the unit but even that is not difficult.
Probably the only difficult part of the Sophos UTM is the WebControl as this can be setup many ways. Ensuring you have mapped out a solution that is adaptable to the company is probably the most complex part.
What about the implementation team?
As we are a supplier, we bounce off ideas with their sales engineers. They are excellent.
What was our ROI?
Unsure as I don't deal in the money side of things but I think the clients get excellent returns as their security is totally covered if they include EndPoint protection.
What's my experience with pricing, setup cost, and licensing?
Most companies I have dealt with handing them a unit find they don't have to do much ongoing work on the unit. Once its working, its working and adjustments to rules and policies are easy.
Which other solutions did I evaluate?
No, we had a good relationship with Sophos and after comparing it to our previous solution (SonicWall) we were convinced it was a good product.
What other advice do I have?
If you are a IT Consultant shop, become a partner and do the training.
If you are the IT of a company, you can either get a IT Service company to set the unit up for you or if you are confident with firewalls you can purchase premium support to get assistance for troubleshooting purposes.
Disclosure: My company has a business relationship with this vendor other than being a customer. We are a business partner with Sophos
Buyer's Guide
Sophos UTM
August 2025

Learn what your peers think about Sophos UTM. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,370 professionals have used our research since 2012.
IT/Telecom Specialist at Prewest
The web application firewall is a good feature, despite it limiting you to only using ports 80 and 443.
What is most valuable?
The web application firewall and web filtering. We are using the UTM to be the gateway for the private cloud solutions we offer.
How has it helped my organization?
Easy management of the firewall, with one URL to control the firewall/web filters for our entire cloud.
What needs improvement?
HA needs to be improved for the software appliance because if Sophos is deployed in ESXI/Hyper-V then the HA is unstable. Also, the web application firewall only allows the use of ports 80 and 443, and if we could use others ports than that would be a welcome addition.
For how long have I used the solution?
For two years now in our datacenter, and also several deployments at some of our customers.
What was my experience with deployment of the solution?
Setting up the link aggregation group (NIC teaming) gave us some problems with the ethernet VLAN option for WAN, but after a firmware update, the issue was resolved.
What do I think about the stability of the solution?
If you enable the intrusion prevention option in the firewall any Wordpress deployments on a Plesk server behind the firewall slows down to a crawl, and there is no fix yet. The current workaround is disabling the intrusion prevention option at the moment.
What do I think about the scalability of the solution?
No issues yet.
How are customer service and technical support?
Customer Service:
7/10. Getting a new license for the SG220 sometimes takes a long time, but they will give you a 30 day demo license to compensate for it.
Technical Support:9/10. Any question or issue is solved within minutes after calling technical support.
Which solution did I use previously and why did I switch?
SonicWALL was our previous product, and we switched to Sophos because of its ease of use.
How was the initial setup?
When you start the initial setup you`re helped with wizards, but if you use the software appliance and make a mistake by selection wrong interfaces in the wizard it can result in the firewall becoming unreachable.nThe hardware appliance is (almost) plug & play.
What about the implementation team?
We implemented it in-house.
What was our ROI?
It's around six to nine months.
Which other solutions did I evaluate?
We looked at several open-source firewall options whose names I will not mention, and the reason we did not use them was because of the ease of use, and what our support desk could do.
What other advice do I have?
If you want an easy to manage, and powerful firewall then take look at Sophos UTM.
Disclosure: My company has a business relationship with this vendor other than being a customer. We are a reseller of the Sophos UTM and or other product of Sophos.
CEO, Technologist with 51-200 employees
Comprehensive UTM Product, scale-able, fast, understandable user interface
What is most valuable?
Proven UTM technology, excellent security and threat management are valuable features. The fact that I can provide scalable solutions for a SoHo environment on a small appliance, run on my own PC/server or even a virtualized environment allows me to accommodate almost any business, regardless of size. The software works in the same way across all the models. I have managed all my clients via the Sophos UTM Manager, a centralized console. I am a MSP, so having a centralized system to managed and maintain all of my client UTM firewalls is just gravy.
Customers appreciate the extensive built in reporting, rock solid IPS and security features. Coupled with a centralized Wireless and Remote Ethernet Device (RED) Device extends my service offerings. Lastly, the Total Protect bundle offers an affordable, comprehensive solution for the SMB market.
How has it helped my organization?
Using the SUM (Sophos UTM Manager) Central Console, each client UTM is configured to report to my RMM and CRM system for monitoring, SLA, ticketing, and support. We can administer a majority of our management such as firmware updates from our Sophos UTM manager. With many other products, this needs to be done and case by case basis.
We also schedule weekly automatic backups of the clients UTM configuration. These backups are emailed to our support portal and preserved. We keep spare/loaner equipment in stock so if a client’s UTM has a catastrophic failure, we prep a spare unit, apply their most recent configuration, and within 5 minutes have a functioning loaner unit we can deliver while their warranty replacement is processed. A simple drive to the client’s location and a swap out is done which gets them back in business on the same day. You can also get a 30 day full trial license for appliance or software. My sales staff can place a 30 day trial of fully functional unit as part of a proof of concept.
What needs improvement?
The unit offers great failover and load balancing features that can be complex to understand, some streamlining of the process would help. More predefined port rules would help the novice user/technician as well.
For how long have I used the solution?
I have been a Sophos/Astaro Partner for over 10 years. I started with Astaro v6 and have continued with them following their acquisition by Sophos a few years ago. The product keep getting better and better. I have over 200 units I have installed and managed. I am currently selling the SG Series with UTM v9.309. The SG series have models that fit small business up to large enterprise environments.
Alongside the hardware versions, we also use a virtualized version running UTM 9.
What was my experience with deployment of the solution?
The only issues I have, have been due to human error.
What do I think about the stability of the solution?
The solution is very stable if you size the unit to the environment. An SG125 is great for a 25 person office with web, email filtering, application control, etc. but it would not work well in a 100 person office. You need to know the proper sizing prior to deployment.
What do I think about the scalability of the solution?
As stated, unit needs to be scaled to the environment. So if I don’t do my job of understanding the client's environment, it is possible to undersize the unit just like every other product. For clients who are planning major growth, we tend to sell either a virtualized UTM or software base unit. Then it is simply a matter of adding license capacity, RAM, CPU, etc. when needed.
How are customer service and technical support?
Customer Service:
They have a great account team and customer service is solid. 85% of the time the issues are resolved on the same day, and 97% by the next business day.
Technical Support:They have excellent technical support. I can submit a ticket request via their portal, with a call, etc. I can get someone 24/7 and usually within an hour. They also have a great escalation procedure.
Which solution did I use previously and why did I switch?
I have used many, such as SonicWALL, Cisco, Juniper, WatchGuard, and FortiGate. Sophos is consistent and deep in their solutions and I like a consistent platform and support.
How was the initial setup?
Simple small offices are a breeze. We have some template configurations, which only require us to stage and activate a license(s), install a basic template and modify the interfaces to meet client specifics and then add the unique definitions. More complex setups start with a basic template which even my technicians can load, and then require an engineer or security specialist to finish off.
What about the implementation team?
We are a managed service provider (MSP) so we do it in-house for clients. We provide our customers with basic training and complete documentation package.
What was our ROI?
As with most hardware, margins could always be better. I can get competitive pricing on larger deals. Our biggest ROI is the monthly management fee, which is very reasonable for our clients. Since we do all of our management (updates, reports, etc.) from the SUM we spend very little time on this and a technician can do it. It has a very good economy scaling and the annual subscription renewals are pretty standard with not much of a margin. This solution fits the MSP model very well due to it being a centralized control/management solution.
What's my experience with pricing, setup cost, and licensing?
A SoHo setup takes about an hour, which is US$125 and the monthly management/maintenance is US$30, but it all adds up.
Which other solutions did I evaluate?
We have evaluated many
- WatchGuard
- SonicWALL
- Cisco
- FortiGate
- Smoothwall, etc.
What other advice do I have?
The product has a shallow and a deep end. Getting a small business/SoHo running up quickly and reliably is straight forward, but the deep end takes some technical skills, just like any solution. What I really like is that my Tier One guys can get a quick status update, have a look very quickly, and then resolve most basic issues. Tiers two and three are not as involved unless there is a major issue or complexity. Also, when buying the product, get the audit/chance tracking built in too!
Disclosure: My company has a business relationship with this vendor other than being a customer. My company is a business partner.
Founder at a tech services company with 51-200 employees
Sophos UTM helps us to control incoming and outgoing network traffic. Not a highly available and scalable product.
What is most valuable?
Valuable Features include Sophos Remote Access VPN, Country Based Firewall, Web Application Firewall, Ease of access (via browser) and Reporting.
How has it helped my organization?
Sophos UTM helps us to control incoming and outgoing network traffic. It also helps employees connect to the AWS VPC environment from remote locations. Web application firewall protects applications from different hacking attempts like SQL Injection, Cross site scripting, Cookie signing, URL hardening etc. On top of that, it also helps the organization adhere to compliance rules and provides an audit trail of the environment.
What needs improvement?
Sophos UTM is not a highly available and scalable product. Till now, it is a single point of failure.
For how long have I used the solution?
2.5 years.
What was my experience with deployment of the solution?
No issues encountered. We had a very smooth deployment.
What do I think about the stability of the solution?
No issues with stability.
What do I think about the scalability of the solution?
Yes. Sophos UTM on AWS is not an scalable product. Sophos is actively working on scalability part from using a UTM manager which can control configuration deployment on multiple UTM's
How are customer service and technical support?
Customer Service:
Customer service level is top notch.
Technical Support:Very Good. All our queries were properly answered on time.
Which solution did I use previously and why did I switch?
Yes. Earlier, we had used Checkpoint. But the deployment procedure and user interface for Checkpoint was very complicated. The amount of time to invest in checkpoint is nearly 2x than Sophos. Checkpoint requires tool to be installed on your system while Sophos is a browser based tool.
How was the initial setup?
It was a very straightforward setup. As it is a browser based tool, it helps administrator to access it from different location and system. We don't have to download desktop clients on our local system. Also, we can access this product from different operating systems (linux, windows and Mac).
What about the implementation team?
We deployed it in-house.
What was our ROI?
ROI for the product is very high. The cost of the product is based on the number of users and the licensing is not too expensive.
What's my experience with pricing, setup cost, and licensing?
On AWS, instances/servers are charged on hourly basis. The yearly licensing cost for 10 years is nearly around $200-300.
Which other solutions did I evaluate?
While we were looking for deployment of UTM product on AWS in year 2011, there were only 2 stable products available in market i.e., Sophos and Checkpoint. We choose to go ahead with Sophos.
What other advice do I have?
Easy to use, Easy to access, good for compliance. It is a very good product as compared to others available on AWS.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
The Sophos UTMs are highly available you just need 2 or more. You can also have them in active active or active passive mode
Network Security Engineer at a tech services company with 1-10 employees
A solution that provides both easy maintenance and configuration for its users
Pros and Cons
- "It is a stable product... I rate the solution's technical support a nine out of ten...The initial setup is quite easy because they have all the information on their website."
- "In short, the UI and UX are the areas of improvement in Sophos UTM and similar solutions compared to Palo Alto."
What is our primary use case?
Regarding the use cases, the solution was deployed for a production client, which was a hardware production company.
What is most valuable?
The features that I have found most valuable in Sophos UTM are its scalability and feasibility, as well as the quality of its customer service, followed by the ease of maintenance and configuration of the product itself.
What needs improvement?
Palo Alto has a different market because of their dashboard, overall looks, and other features. They are costly, but their services are quite good. And they offer a different platform compared to their competitors. Their device operates differently from others. While Palo Alto and Sophos have similar features, they operate on different platforms, providing a superior user experience compared to existing devices. In short, the UI and UX are the areas of improvement in Sophos UTM and similar solutions compared to Palo Alto.
For how long have I used the solution?
I have experience with Sophos UTM for nearly two years. Recently, I deployed two Sophos solutions, one with HA and one on a primary device. The deployment process for one of the companies was done last month.
What do I think about the stability of the solution?
It is a stable product.
What do I think about the scalability of the solution?
It is a scalable product. So it is easy to scale it up.
How are customer service and support?
The solution's customer service is good. I rate the solution's technical support a nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is quite easy because they have all the information on their website. Customer service is available anytime, especially when you set to start the device's configuration.
Since I was just a part of the initial configuration after deployment, I don't know the steps in the deployment process.
What's my experience with pricing, setup cost, and licensing?
Both the technical and cost aspects are feasible since it is possible to obtain and use the device as a PnP solution. Considering cost and technical aspects, I rate the solution a ten out of ten.
What other advice do I have?
Even if I compare Sophos UTM with other solutions, I don't think any pros or cons stick out since our clients are okay with the solution, and there has been no complaint regarding Sophos UTM.
My advice to others planning to use the solution is that it is quite easy. You can simply refer to the solution's blog or YouTube videos and install the solution. It's also quite easy to configure it. So, if you purchase it by yourself, you can configure it and use it on your particular network.
I love working with Palo Alto. So, I would like to give it a ten out of ten. Also, Palo Alto has a different market. So, I would always give a nine out of ten for other solutions. Overall, I rate the solution a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Implementer
Assistant Manager IT Zircon Technology at Zircon Techonolgy
Offers strong network security and the option for remote deployment, with good configuration options and easy handling
Pros and Cons
- "The solution is easy to handle and configure."
- "The reporting could be a lot better."
What is our primary use case?
We use this product for network security and implement using a Sophos SD-RED device.
What is most valuable?
The solution is easy to handle and configure.
The product also offers remote deployment capability with a Sophos SD-RED device.
What needs improvement?
The reporting could be a lot better and technical support could be improved.
For how long have I used the solution?
We have been using this solution for two years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is relatively scalable, we have over 500 users in our company and use three people for maintenance.
How are customer service and support?
In our experience it has been hard to get to customer support, even premium support doesn't offer much availability.
How was the initial setup?
The initial setup is quite simple.
What's my experience with pricing, setup cost, and licensing?
The price is comparable to other products of this kind.
Which other solutions did I evaluate?
We considered implementing a SonicWall product, but went with Sophos UTM because it is easier to handle and configure.
What other advice do I have?
I would rate this solution a nine out of ten.
We are satisfied with Sophos UTM and will continue implementing it for the foreseeable future.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Good profiling but problems with auto-updating
Pros and Cons
- "Sophos UTM's most valuable features are profiling and its simple configuration."
- "There's an issue that when we deploy UTM on fiber, it automatically upgrades to the latest version without giving an option to stay on the current one."
What is our primary use case?
I mainly use UTM for app filters.
What is most valuable?
Sophos UTM's most valuable features are profiling and its simple configuration.
What needs improvement?
There's an issue that when we deploy UTM on fiber, it automatically upgrades to the latest version without giving an option to stay on the current one.
For how long have I used the solution?
I've been working with Sophos UTM for over four years.
What do I think about the stability of the solution?
UTM is stable.
What do I think about the scalability of the solution?
UTM is scalable.
How are customer service and support?
Sophos' technical support is good.
How was the initial setup?
The initial setup is simple.
What other advice do I have?
I would rate Sophos UTM as seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner / Integrator

Buyer's Guide
Download our free Sophos UTM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: August 2025
Product Categories
Unified Threat Management (UTM)Popular Comparisons
Cisco Meraki MX
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Juniper SRX Series Firewall
KerioControl
Untangle NG Firewall
Stormshield Network Security
Zyxel Unified Security Gateway
Check Point CloudGuard Network Security
Huawei NGFW
Sophos Cyberoam UTM
LANCOM R&S Unified Firewalls
Seqrite UTM
Endian UTM
Buyer's Guide
Download our free Sophos UTM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which would you recommend to your boss, Fortinet FortiGate or Sophos UTM?
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
- What Is The Biggest Difference Between Sophos and pfSense?
- Who provides a better antivirus solution: Bitdefender or Sophos?
- What are the biggest differences between Meraki and Sophos? Which one is good for security and SD-WAN?
- What is the biggest difference between Fortinet FortiGate and Sophos UTM?
- When evaluating Unified Threat Management (UTM), what aspect do you think is the most important to look for?
- What UTM solution do you recommend?
- Why is a UTM solution important?
I agree with Patrik. Specially SG series devices running on Sophos UTM 9.3 are amazingly performing devices. If they are correctly sized and scoped, I gurantee they match even out perform many of their competition. They offer 360 degree Security peace of mind. Still though, my favaroutes are WatchGuard M series UTMs for SMBs.
Regards,
Serhat