Symantec Endpoint Detection and Response works as a threat detection and response tool. The solution creates a response for overall malware viruses and threats so we can easily identify harmful attacks.
Consultant at CNS Engineering
The solution creates a response for overall malware viruses and threats to easily identify harmful attacks
Pros and Cons
- "The most valuable features of Symantec Endpoint Detection and Response are its immediate response and investigation."
- "The solution’s scalability and stability could be improved."
What is our primary use case?
What is most valuable?
The most valuable features of Symantec Endpoint Detection and Response are its immediate response and investigation.
What needs improvement?
The solution’s scalability and stability could be improved. The solution's investigation feature can be further improved.
For how long have I used the solution?
I have been working with Symantec Endpoint Detection and Response for the last year.
Buyer's Guide
Symantec Endpoint Detection and Response
November 2023

Learn what your peers think about Symantec Endpoint Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: November 2023.
744,865 professionals have used our research since 2012.
What do I think about the stability of the solution?
I rate Symantec Endpoint Detection and Response a two out of ten for stability.
What do I think about the scalability of the solution?
We have around 10 to 20 customers for Symantec Endpoint Detection and Response. Our customers are medium and enterprise businesses.
I rate Symantec Endpoint Detection and Response a two out of ten for scalability.
How are customer service and support?
Symantec Endpoint Detection and Response's technical support is fantastic.
How was the initial setup?
On a scale from one to ten, where one is difficult and ten is easy, I rate the solution a nine out of ten for the ease of its initial setup.
What about the implementation team?
The solution's deployment took hardly two to three days because it was a simple procedure.
We first get the requirements for this product, and then we install the product on machines created for us. We integrate Symantec Endpoint Detection and Response with Symantec Endpoint Protection, and it starts working.
What other advice do I have?
Symantec Endpoint Detection and Response has fantastic features to capture things. If an organization faces an attack, the solution takes a response and investigates the source of the attack. Symantec Endpoint Detection and Response's investigation is very good.
Overall, I rate Symantec Endpoint Detection and Response a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: reseller
Last updated: Oct 6, 2023
Flag as inappropriate
Threat Intelligence and Forensics Investigation Specialist at True Digital Group
Effective process review, useful machine isolation, and reliable
Pros and Cons
- "There are times when Symantec Endpoint Detection and Response tags an executable as malicious when it is trying to get executed on the machine. In this case, it prevents the execution and it gives you a process view of things where you can look into what has happened and whether it is a genuine process trying to access some system activities, or it's a malicious one. Depending upon the process, it gives you a clear identification, and we can do the containment from the interface itself and isolate the machine from the network. The process review on network isolation is good."
- "Symantec Endpoint Detection and Response could improve the reporting. It is very difficult to create reports from the user interface."
What is our primary use case?
Symantec Endpoint Detection and Response is used for threat protection.
What is most valuable?
There are times when Symantec Endpoint Detection and Response tags an executable as malicious when it is trying to get executed on the machine. In this case, it prevents the execution and it gives you a process view of things where you can look into what has happened and whether it is a genuine process trying to access some system activities, or it's a malicious one. Depending upon the process, it gives you a clear identification, and we can do the containment from the interface itself and isolate the machine from the network. The process review on network isolation is good.
What needs improvement?
Symantec Endpoint Detection and Response could improve the reporting. It is very difficult to create reports from the user interface.
For how long have I used the solution?
I have been using Symantec Endpoint Detection and Response for approximately six months.
What do I think about the stability of the solution?
Symantec Endpoint Detection and Response is a stable solution.
What do I think about the scalability of the solution?
The stability of Symantec Endpoint Detection and Response is good.
We have the solution running on 3,000 endpoints. After two years after we have more clients, we might increase usage.
How are customer service and support?
I have not contacted support. The administrator of the platform is taking care of the support for us. They might have contacted the support but I have not.
Which solution did I use previously and why did I switch?
I have not used another solution previously.
How was the initial setup?
The initial setup of Symantec Endpoint Detection and Response is straightforward.
What about the implementation team?
We have three people that are supporting the solution.
Which other solutions did I evaluate?
I have evaluated McAfee.
What other advice do I have?
I would recommend this solution to others.
I rate Symantec Endpoint Detection and Response an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Symantec Endpoint Detection and Response
November 2023

Learn what your peers think about Symantec Endpoint Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: November 2023.
744,865 professionals have used our research since 2012.
Threat Analyst at SA RVE Bank
Quick and easy to set up with good reliability
Pros and Cons
- "The pricing is good."
- "They do need to minimize the number of agents installed on a server."
What is our primary use case?
It's part of the endpoint and is an EDR product. There are many use cases we're looking at, including power share and general detection.
What is most valuable?
The initial setup is quick and easy.
We found the product to be scalable.
The stability is good. It's reliable.
The pricing is good.
Technical support is okay.
It's easy to add hash files.
What needs improvement?
I have not picked up anything that is lacking in terms of features while using this tool.
They do need to minimize the number of agents installed on a server.
The response time for technical support takes too long.
For how long have I used the solution?
I've been using the solution for two and four months years now.
What do I think about the stability of the solution?
The solution is stable. There are no bugs or glitches and it doesn't crash or freeze. it's reliable.
What do I think about the scalability of the solution?
The solution is scalable. That's not a problem.
We have about 2,500 endpoints. It's actually even more than that as it is deployed on the server as well.
How are customer service and support?
While technical support is great, it does take up to two days before I get a response. They are a bit slow.
How was the initial setup?
The implementation process was quick and easy, and we didn't need a DBU, a database administrator.
Two people handled the initial setup it was done over one day.
What about the implementation team?
Our team handled the deployment in-house. We didn't need any outside assistance.
What's my experience with pricing, setup cost, and licensing?
The cost of the solution is affordable and manageable.
What other advice do I have?
We are a customer and an end-user.
I'd rate the solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Data Protection Specialist at CompuCom
Integration with antivirus provides better security posture
Pros and Cons
- "A great feature of this solution is that it is very well-integrated with antivirus software. Other ADR solutions are implemented as single technologies and are not integrated with the provider, but Symantec offers AV plus ADR."
- "I think we have experienced some technical issues because the company focuses mainly on bigger clients. Also, sometimes the solution fails to detect zero-day attacks, so that feature needs some enhancement because it is lacking compared to other solutions."
What is most valuable?
A great feature of this solution is that it is very well-integrated with antivirus software. Other ADR solutions are implemented as single technologies and are not integrated with the provider, but Symantec offers AV plus ADR.
What needs improvement?
I think we have experienced some technical issues because the company focuses mainly on bigger clients. They should treat every client equally instead of only targeting high-profile or high-revenue-generation clients. The focus should be client-centric, not only revenue-centric.
Also, sometimes the solution fails to detect zero-day attacks, so that feature needs some enhancement because it is lacking compared to other solutions.
For how long have I used the solution?
I have been implementing this solution for almost four years.
What do I think about the stability of the solution?
The stability of the solution is good.
What do I think about the scalability of the solution?
The scalability of the solution is quite good.
How are customer service and support?
The turnaround time of the technical support team is quite good.
How was the initial setup?
The initial setup is a little bit complex because the solution gets integrated with the existing antivirus software.
What's my experience with pricing, setup cost, and licensing?
The licensing costs depend on the number of endpoints that are involved.
What other advice do I have?
To anyone looking into Symantec Endpoint Detection and Response, I would say that it's the best solution that can be integrated with AV, thus providing better security posture.
I would rate this solution as an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
CTO at ABM Info. tech
Effective, and has good support, but it could be more compatible
Pros and Cons
- "The Detection vulnerability is very effective."
- "It would be beneficial to have more integration and compatibility with other platforms."
What is our primary use case?
Symantec Endpoint Detection and Response is primarily applied to endpoints in the banking and telecom sectors.
If you want to protect yourself from zero-day threats, one option is to have Endpoint and the EDP, and if you don't want to have that combination, EDR is the best way to detect any exfiltration into the network, and then to respond accordingly.
What is most valuable?
The Detection vulnerability is very effective. It distinguishes Symantec Endpoint Detection and Response from its competitors.
What needs improvement?
It would be beneficial to have more integration and compatibility with other platforms.
For how long have I used the solution?
I have been working with Symantec Endpoint Detection and Response since 2018.
What do I think about the scalability of the solution?
We have two customers who are using this solution.
How are customer service and support?
I am very comfortable with technical support. It is good for whatever product they have.
How was the initial setup?
To deploy this solution, you will definitely require technical knowledge. It is not as straightforward and simple as other endpoints, but it is not difficult to deploy as long as you are aware of the technical aspects of it.
We need three sales engineers and backroom support to maintain this solution.
What's my experience with pricing, setup cost, and licensing?
It's a yearly subscription.
What other advice do I have?
I would recommend this solution to others.
I would rate Symantec Endpoint Detection and Response a seven out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Easy to deploy and has a good stability
Pros and Cons
- "The solution is scalable."
- "Its UI could be more user-friendly."
What is most valuable?
The solution is easy to deploy on both on-cloud and on-premises infrastructures.
What needs improvement?
The solution's price could be better. Presently, it is expensive for basic functionality. Also, they should make its UI more user-friendly. It takes time to find the policies and analyze their effects. They should add a customization option for policies. In addition, they should add more scanning features to it.
For how long have I used the solution?
We have been using the solution for a year.
What do I think about the stability of the solution?
It is a stable solution. I rate its stability as an eight.
What do I think about the scalability of the solution?
We have around 150 solution users of the solution in our organization. It is scalable, and I rate its scalability as an eight.
How are customer service and support?
The solution's customer service could be better.
How would you rate customer service and support?
Neutral
How was the initial setup?
The solution's initial setup is straightforward. It takes a day to complete the process.
What about the implementation team?
Our team of three executives deploys and maintains the solution.
What's my experience with pricing, setup cost, and licensing?
The solution is expensive. I rate it as a five for pricing.
What other advice do I have?
I rate the solution as an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Apr 19, 2023
Flag as inappropriateSenior Manager IT at Ami Organics
Scalable, reliable, but support could improve
Pros and Cons
- "Symantec Endpoint Detection and Response is stable."
What is our primary use case?
Symantec Endpoint Detection and Response is used for the protection of endpoints.
For how long have I used the solution?
I have been using Symantec Endpoint Detection and Response for approximately four years.
What do I think about the stability of the solution?
Symantec Endpoint Detection and Response is stable.
What do I think about the scalability of the solution?
The scalability of Symantec Endpoint Detection and Response is good.
How are customer service and support?
The technical support from Broadcom has given us some challenges. Previously, they had experienced people who handle the end user's query and escalate the problems within a good timeframe. Since Broadcom took over, we have not been satisfied by the way they are handling the end user's query or end-user support.
How was the initial setup?
Symantec Endpoint Detection and Response
What about the implementation team?
We have a partner that has helped us with the implementation, configuration, and policies.
What other advice do I have?
Determining if this is the right solution for someone depends on the region or what type of partner they have. Broadcom user support might be different in your region but we are in the Asia Pacific region is not good. I don't know who is providing the proper support.
I rate Symantec Endpoint Detection and Response a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Vice President, Head of Infrastructure, Information Systems Group at a financial services firm with 10,001+ employees
Good in terms of malware detection and scalability, but unpredictable pricing is a cause of concern
Pros and Cons
- "It is mostly used for malware detection and antivirus purposes."
- "It would be good if it can anticipate zero-day attacks. I don't know how it can be done and if it is even a feature of this product."
What is most valuable?
It is mostly used for malware detection and antivirus purposes.
What needs improvement?
The unpredictability of the pricing is a cause of concern.
It would be good if it can anticipate zero-day attacks. I don't know how it can be done and if it is even a feature of this product.
For how long have I used the solution?
I have been working with this solution for more than three years.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
We haven't had any issue with scaling the product. Its scalability has not been an issue.
Which solution did I use previously and why did I switch?
I have used Sophos in another company, but that was almost 10 years ago.
How was the initial setup?
I was not a part of the installation team. When I arrived, it was already there.
What's my experience with pricing, setup cost, and licensing?
Of late, because of the Broadcom purchase, its price has been increasing.
What other advice do I have?
I would rate it a seven out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Buyer's Guide
Download our free Symantec Endpoint Detection and Response Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2023
Product Categories
EDR (Endpoint Detection and Response)Popular Comparisons
Microsoft Defender for Endpoint
CrowdStrike Falcon
Cisco Secure Endpoint
SentinelOne Singularity Complete
Cortex XDR by Palo Alto Networks
Intercept X Endpoint
Fortinet FortiEDR
Elastic Security
VMware Carbon Black Endpoint
Trellix Endpoint Security (ENS)
Check Point Harmony Endpoint
Bitdefender GravityZone EDR
Trend Vision One
Cybereason Endpoint Detection & Response
Buyer's Guide
Download our free Symantec Endpoint Detection and Response Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- Which is better for Endpoint Security: EDR or XDR solutions?