Computer Systems Administrator at a university with 10,001+ employees
Real User
Lacks next-generation behaviour-based detection, offers terrible technical support, and not as robust as competitors
Pros and Cons
  • "The solution detects malware very well."
  • "The stability was not the best. There were times when antivirus updates broke it. It wasn't necessarily self-updating - at least, not in terms of the virus signatures. It updated in terms of the executable files. Therefore, when Windows updates would come out, they often couldn't be installed, or the computer would hang due to the fact that the updates weren't compatible with the antivirus."

What is our primary use case?

The use case for the solution was basically this: any computer or anything used for any sort of official business needed to have endpoint protection and needed to have some sort of antivirus protection. The thing was somewhat more than just an antivirus, it also included a firewall that operated in addition to the Windows or Mac firewall.

The university policy basically required that all endpoint devices used for official business have to meet certain requirements and one of them was to have an antivirus.

How has it helped my organization?

The solution probably caught some malware a certain percentage of the time and that helped the organization. By the time we abandoned it, it was actually less effective, at least on Windows 10 machines, than the built-in antivirus that you get with the Windows 10 Defender Antivirus. It became, in the end, sort-of a liability.

It also became a liability when the company was sold to Broadcom. The name is actually different now. I don't think it's called Symantec Endpoint Protection. It's called Broadcom Endpoint Protection. We had a very difficult time even getting in touch with the technical support from that company, especially after Symantec was sold. It wasn't a very robust solution.

What is most valuable?

The solution detects malware very well.

What needs improvement?

It wasn't a very good solution overall, which is why we ended up replacing it.

Most organizations are choosing a next-gen antivirus, one that's based on artificial intelligence. Symantec Endpoint Protection was one of those legacy products that have been around forever. Symantec was a spinoff from Norton. Norton Antivirus was one of the very first antiviruses to come out in the 1980s. Symantec was very highly rated at one point in its life. It never really caught on to the new trends and antivirus protection. And so it still relied on things like a database of virus signatures that would need to get downloaded and then files would be checked for those signatures.

Modern antiviruses don't do that. They're based on behavior. They're based on intelligence algorithms. They're honed by artificial intelligence and machine learning from data collected all over the world. And so for that reason, the next-gen antiviruses are much more efficient at detecting viruses. They also take up a lighter load on the computer.

Next-generation is behavior-based detection rather than signature-based detection. Symantec tried to be a hybrid between the two. It had a behavior-based component called SONAR, however, it was still mostly a signature-based software antivirus application. For that reason, you can never keep up with all the mutations and viruses, and you can't keep up with malicious behavior that isn't based on viruses. Things like downloaded PowerShell scripts, things that computers can do with the components that they already have without needing to put any virus on the computer. A lot of malicious attacks, government-backed attacks, don't use any kind of foreign software. They take advantage of vulnerabilities within existing operating systems like Microsoft Windows or the various versions of Linux or the Mac operating system. They don't need to put additional software on the computer to compromise them.

That, in a nutshell, is why we switched to a next-gen antivirus. Next-gen antiviruses have probably been around for about five or six years. Some of the old companies made the transition to them seamlessly. Symantec didn't. It remained wedded to the old technology and that made it, you could say, a has-been.

Buyer's Guide
Symantec Endpoint Security
March 2024
Learn what your peers think about Symantec Endpoint Security. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
767,847 professionals have used our research since 2012.

For how long have I used the solution?

I've been using the solution for many years. It's probably been about ten years at this point, at least a decade.

What do I think about the stability of the solution?

The stability was not the best. There were times when antivirus updates broke it. It wasn't necessarily self-updating - at least, not in terms of the virus signatures. It updated in terms of the executable files. Therefore, when Windows updates would come out, they often couldn't be installed, or the computer would hang due to the fact that the updates weren't compatible with the antivirus. I give it pretty poor score for robustness.

What do I think about the scalability of the solution?

It was scalable just due to the fact that had to be installed individually on individual computers. For the unmanaged workstations, it was as scalable as you wanted it to be. There was a new download and a new install on a new computer. There are no limits on that. I'm not sure, however, how true that is, as it wasn't within my area of responsibility. I'm not sure if the managed work points overloaded the servers that were meant to monitor them. I don't think that was the case. The scalability was probably pretty good there too. I never heard any complaints about it not being scalable.

We likely had between 10,000 and 20,000 users on it. The roles would include, since it's a university, students, faculty, staff, and researchers. That pretty much covered the type of people that work at a university.

We don't plan to increase usage as we've completely phased out the solution.

How are customer service and support?

Once Symantec was sold to Broadcom, it became very difficult to reach out to technical support, and they just stopped being responsive. By the end, we were very unhappy with their level of support.

Which solution did I use previously and why did I switch?

I've been at the organization for 21, 22 years. Originally, before we had Symantec, it was McAfee antivirus. We had that up until maybe about 2010 or so. Now, we are using CrowdStrike Falcon.

How was the initial setup?

The initial setup was not complex. It was simple.

The deployment was always ongoing due to the fact that, as a university with something like 16,000 employees, computers were getting bought and repurposed all the time. The initial rollout was in fact not a managed version of the antivirus. It was just a standalone version that users could download from a website when they provided their credentials. After that, they would just double click on a downloaded file and run the installer and they'd have the antivirus.

However, it was completely unmonitored. The antivirus program on their computer was not sending its data anywhere. It couldn't be helped by anyone remotely to do its job of protecting the computer.

Therefore, almost all organizations now want to have a managed antivirus solution where there's software installed on the computer, but it communicates with the cloud, and IT administrators at the organization can control this behavior and learn from it.

In terms of the staff required to handle the deployment and maintenance, there was probably the equivalent of maybe two to three full-time staff that were dedicated to antivirus endpoint protection issues. 

What about the implementation team?

We handled everything ourselves in-house. We didn't need the help of a consultant or integrator.

What's my experience with pricing, setup cost, and licensing?

We pay on a yearly basis. However, I'm unsure of the exact amount.

Which other solutions did I evaluate?

We did evaluate a number of other vendors. We entertained some RFPs and we did testing on four other competing products. There was one other competitor that was close. The main factor that tilted us toward CrowdStrike is that they did make a last-minute significant cut in price to their offer. I think they reduced it by something like 30% or 40%.

CrowdStrike has been in the business longer and is a bigger company than the runner up as well. To us, that mattered. If there is winnowing out of competitors, if the market actually shrinks and there are a few big players in five years, we want to be sure that we're with one of the big players that are going to make it.

What other advice do I have?

The solution is a kind of a mix between an on-premise managed server that managing some machines, and other machines just had an unmanaged client that was distributed to students. It's not actually a cloud, it's a server. It's an on-premises server. It's not a cloud-based server that is being used. The antiviruses report to the server and policies can be set on the server.

I'd advise users to be aware that there are better solutions out there than this. I've learned that technology can change and your solution may be great now, but in a few years, it may drop to the bottom of the barrel. That's what happened here.

I'd rate the solution one out of ten. In order to get any sort of higher rating, they would need to start it over again from scratch. Instead of trying to make a legacy product better, they should abandon it and invent a new product.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Senior Infrastructure and Security Engineer at Georgetown University
Real User
Effective threat protection, simple deployment, but heavy on system resources
Pros and Cons
  • "Some of the most valuable features were antivirus, malware, and spyware. They were really good."
  • "We had trouble with the advanced features, such as the firewall builder and all the network protection modules. We were having a lot of issues because it would sometimes block users or the printing, or it would create issues with the network access resources."

What is our primary use case?

We used Symantec End-User Endpoint Security for a thin client for our servers and the full package for the user's systems.

What is most valuable?

Some of the most valuable features were antivirus, malware, and spyware. They were really good.

What needs improvement?

We had trouble with the advanced features, such as the firewall builder and all the network protection modules. We were having a lot of issues because it would sometimes block users or the printing, or it would create issues with the network access resources.

We were using the on-premise version of Symantec End-User Endpoint Security and one of the reasons to use the on-premise versions was to save the network traffic from the cloud. However, because we deployed the full package, the client's computers were really slow most of the time. End-user used to complain that their computers are running slow. It was not only the antivirus because the user had to run other applications as well, in parallel. As soon as we removed Symantec End-User Endpoint Security, the user did see a lot of improvement in their hardware performance, such as the CPU usage being lower and memory resources going down. 

The background scanning performance should be improved because it makes the computers run slow and we had the latest hardware, but it was still having issues. Their engine needs to be improved for the scanning.

For how long have I used the solution?

I have been using Symantec End-User Endpoint Security for 10 years.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

We had more than 10 users using this solution in my organization.

How was the initial setup?

The installation is straightforward. The full deployment took approximately two weeks.

What about the implementation team?

We did the implementation of Symantec End-User Endpoint Security ourselves.

We have one person that supports this solution.

What other advice do I have?

We are phasing out the use of Symantec End-User Endpoint Security in my company and we only have a small number of systems using it at this time.

We plan to switch to Cisco Secure Endpoint.

I rate Symantec End-User Endpoint Security a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Symantec Endpoint Security
March 2024
Learn what your peers think about Symantec Endpoint Security. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
767,847 professionals have used our research since 2012.
IT manager at a transportation company with 10,001+ employees
Real User
Greatly mitigates security risks; provides a good local firewall
Pros and Cons
  • "Offers good antivirus and local firewall."
  • "Is not a full anti-ransomware solution."

What is our primary use case?

We're a large company with half of our business in the UK and half throughout the rest of Europe. We deal with about 13 countries and I work from Serbia. Our business focuses on train and bus transport, and sometimes ferry services. We're using the solution to mitigate security risks. We were considering solutions for endpoint protection and decided to go with Symantec for our work stations and servers. It offers anti-malware plus a firewall and some other functionalities. I'm an IT manager. 

What is most valuable?

I like the antivirus and the local firewall that the solution provides. It's user friendly with a good dashboard. 

What needs improvement?

I'd like to see a full anti-ransomware solution because there are some anti-ransomware functionalities that would assist us if they were included in the solution. 

For how long have I used the solution?

I've been using Symantec End-User Endpoint Security for about six years.

What do I think about the stability of the solution?

The solution is very stable. 

What do I think about the scalability of the solution?

We're not a big business in Serbia but scalability is easy. We have around 160 workstations and about 130 users. 

How are customer service and technical support?

We have a contract with the local Symantec partner in Serbia so we can speak to them in our language. The support is very good. 

How was the initial setup?

The initial setup is rather simple. 

What's my experience with pricing, setup cost, and licensing?

The license for this solution is purchased on an annual bases. The price could be cheaper but it's not too bad. We also pay for technical support which we get locally here in Serbia.

What other advice do I have?

Symantec is not the only endpoint security solution that we actually have experience with but I would recommend it. I think it's one of the best solutions currently on the market.

I rate this solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Project Manager at a real estate/law firm with 10,001+ employees
Real User
A straightforwards setup with good pricing and good real-time updating capabilities
Pros and Cons
  • "The pricing is pretty good."
  • "Technical support could be more responsive."

What is our primary use case?

We're primarily using this solution for our workstations.

What is most valuable?

The product is a good antivirus in terms of the fact that it can do real-time scanning and scheduling. We can plan scans for the weekend. We can also control it on the server for all the clients it manages. 

The solution gets real-time updates of virus definition files from the internet. If there is any malware attack or something, then it can immediately download and apply it to the clients.

The initial setup is straightforward.

The pricing is pretty good. We don't find it too expensive to have in our organization.

What needs improvement?

We've had some issues with the performance. There have been some minor hiccups. Now it's better. Initially, it had some issues, not for all, but some of the systems only. We had applied a fix that was released in the 14.1 version. By 14.2 they fixed the issue. Ever since we applied 14.2, it's good.

During the scanning time, it could be less intrusive for the users. Right now, it's not exactly working quietly in the background.

Technical support could be more responsive.

For how long have I used the solution?

I've been using the solution for six years at this point. It's been a while since we began working with it.

What do I think about the stability of the solution?

While we've had issues with stability in the past, since version 14.2 it hasn't been a problem. We no longer have issues.

What do I think about the scalability of the solution?

The resources can be expanded with more load and all, however, I'm not sure how scalable it is in terms of expanding it.

Internally, there are likely 800 users that use this product.

How are customer service and technical support?

We've dealt with technical support in the past. They are okay, however, they could be faster in their response time. We're not fully satisfied with their level of service.

Which solution did I use previously and why did I switch?

We didn't previously use a different solution.

How was the initial setup?

The initial setup is not too complex. It's pretty simple and straightforward. A company shouldn't have too much trouble with the implementation.

The installation of the server would have taken few hours, however, on the client site we attracted an automated installation, so it deployed from the server and we can pose the agent to the server from the client.

We had a manager and two consultants that handled the implementation.

What about the implementation team?

We had a consultant assist us with the client.

What's my experience with pricing, setup cost, and licensing?

We need licenses to use the product, however, the pricing is reasonable. It's not too expensive.

What other advice do I have?

I'd recommend the solution. I'd rate it at an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Manager at a financial services firm with 5,001-10,000 employees
Real User
Top 5
Has an easy setup process, but the technical support needs improvement
Pros and Cons
  • "The product has valuable features for insights."
  • "There could be definition updates installed and running for the product, similar to new EDR solutions that receive updates from the internet."

What is our primary use case?

We use Symantec Endpoint Security as an antivirus solution to protect our servers.

What is most valuable?

The product has valuable features for insights.

What needs improvement?

There could be definition updates installed and running for the product, similar to new EDR solutions that receive updates from the internet. We still have legacy concepts where clients have installed definitions themselves. It could be more effective. Additionally, the memory usage by the product could be reduced.

For how long have I used the solution?

We have been using Symantec Endpoint Security for ten years.

What do I think about the stability of the solution?

I rate the platform’s stability an eight out of ten.

What do I think about the scalability of the solution?

We have 13000 Symantec Endpoint Security users in our organization. I rate its scalability an eight out of ten.

How are customer service and support?

The technical support team’s response time is slow.

How was the initial setup?

The initial setup process is easy.

What's my experience with pricing, setup cost, and licensing?

I rate the product's pricing a six out of ten.

What other advice do I have?

I rate Symantec Endpoint Security a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
Technical Manager at Digital World
Real User
Stable, scalable, quick and easy to install
Pros and Cons
  • "There are no issues with scalability."
  • "After selling this product, what we have observed is that the system gets slower, which is a major issue."

What is our primary use case?

We are service providers. We use this solution for endpoint response and detections.

We use this in the banking sector regularly.

We also use it for automatic threat protection and for DLP (Data Loss Protection).

What needs improvement?

After selling this product, what we have observed is that the system gets slower, which is a major issue.

We would also like to see better pricing. It's almost double when compared to other products.

For how long have I used the solution?

I have been using this solution for more than seven years.

We are using the latest version.

What do I think about the stability of the solution?

It's a stable solution.

What do I think about the scalability of the solution?

It is scalable. If you get the proper licenses then it scales well. There are no issues with scalability.

We are service providers with many different clients. Some of our customers have 100 users, whereas others have 200, and even as many as 300.

How are customer service and technical support?

We have completed several installations but have never contacted technical support.

How was the initial setup?

We do a direct installation. It is cloud-based and we can create a diary on the Symantec site.

We create the ID and download the client package.

It can take five to seven minutes to install per node.

If it is in the same network, we don't require much manpower to maintain it. All of the usernames and passwords are in the system. We can deploy remote deployment and installation.

What's my experience with pricing, setup cost, and licensing?

Symantec is expensive. 

When compared with Trend Micro and Sophos, it is expensive.

Customers are required to purchase a license.

What other advice do I have?

We recommend this solution to others who are interested in using it. In some organizations, it is compulsory to use Symantec.

I would rate this solution an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Senior Network Engineer at a government with 10,001+ employees
Real User
Blocks threats well and is automatically updated on a regular basis
Pros and Cons
  • "The most valuable feature is the automated updating feature."
  • "This solution is resource-heavy."

What is our primary use case?

The primary use cases of this solution are for antivirus protection, anti-malware protection, and personal firewall protection.

What is most valuable?

The most valuable feature is the automated updating. They send out updates on a regular basis. All that we have to do is to set it up on our server to download it, then it is distributed to the individual endpoints. 

Individual machines could do the same thing but it would only be on that one machine.

It seems to block things fairly well.

What needs improvement?

This solution is resource-heavy. It uses up a lot of memory and a lot of disk space. It demands a lot of resources. There have been improvements with Windows 10 and it's not as problematic.

The firewall capabilities did not seem to do what the documentation claimed it should do.

Port control is one of the things that this solution does do, but it does it on a higher level. When I say port control, it's things like USB ports that can be used to plug things in. For example, if you plug in a wired mouse or a wireless mouse then you want the flexibility to be able to do that. It should be able to identify that it is a mouse and let you use it. 

By the same token, if you plug in a 1 TB external hard drive, that should be shut down unless it is one of your hard drives. The only way to detect that would be to have units with their own serial number and the system programmed in such a way that it would recognize it.

Seagate for example has many external drives. They have serial numbers on those drives, and we don't want to just set it up for use by any Seagate drive. We want our external drives to be used, only. We don't want to have to go purchase Seagate drives to have it work. We want them to get it from us, that we know works, and have them return it to us.

I would like to see a check-in system where you can log which specific drives your staff can access and what they cannot access.

For how long have I used the solution?

I have been using this solution for approximately six to eight years.

What do I think about the stability of the solution?

With Windows 7 there were some stability issues. The environment handled resources differently. You could have a fairly resource-heavy solution that would make the system unusable.

Windows 10 improved stability quite a bit.

How are customer service and technical support?

Technical support is good, but when they sold to Broadcom, even though people were paying for the support they were not getting it.

What's my experience with pricing, setup cost, and licensing?

This product is more reasonably priced than some competing solutions.

Which other solutions did I evaluate?

We spoke with some vendors who recommended Sophos and Crowdstrike. While Crowdstrike has some incredible features, it's four times the cost.

Sophos is supposed to handle our needs.

Crowdstrike could handle our needs and then some, but we couldn't justify the cost.

What other advice do I have?

Within the last three or four months, we decided to drop Symantec on its own because of some issues we have with the company. We will be using Sophos.

Symantec sold off their enterprise solutions, which this product falls into. When they sold it. they sold it to a company that has purchased software packages in the past and not done very well with it. They are a hardware company trying to expand into the software realm. This is another example of a hardware company that thinks that they can do software and they can't.

We were told that Broadcom was ignoring all of their customers that were below a certain level of license purchases. Some of the customers were calling wanting to renew their product and they were having to wait a month or six weeks just to get a quote.

We did our own research and confirmed that what we were told was true and decided that we were not going to renew and went to Sophos.

If you are going with Symantec, definitely purchase the 24/7 tech support. They will help you with just about everything, or at least they used to. I am not sure if that still applies to Broadcom.

They now offer the option to put it into the cloud for the management capabilities. That way the endpoints, the individual laptops, and desktop computers are actually going to a website to get the management, the new definitions, and new configurations. This option should seriously be considered. 

I am not recommending that they do that but they should at least seriously consider it, because, while having that one server to do that one thing is fairly important, it would be nice to not have to deal with it.

For what we were using this product for it was pretty good, but there were some things that we didn't like, and some things that we would have like to take advantage of.

I would rate this solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Owner at ONE2ONE Tech Solutions
Reseller
Most recent version is not reliable and cannot be trusted as a viable security solution
Pros and Cons
  • "Threat protection has always worked well."
  • "This latest version has proven unreliable for management and installation."

What is our primary use case?

My primary use case is endpoint antivirus/antimalware security on Windows computers, on and off my office network.

How has it helped my organization?

Initially, it provided easy centralized management of policies and devices. Threat protection has always worked well.

What is most valuable?

I originally posted the most valuable feature is centralized management - after consideration, I realized this is not accurate. I've used the on-premise and cloud versions of SEP.  I prefer cloud versions as it is centralized and easy to manage, but every cloud-managed solution does this. I have many cloud managed solutions I use, but I've found SEP to be quirky and inefficient at best. My personal experience is the protection works well. I haven't had an infected computer in years (managing 300 devices now, more over the years). The problem with the protection is I've encountered far too many computers where the licensing fails at some point after installation without warning or notice. You have to check each computer routinely to verify the license is good and the agent is updating. This directly impacts the core reliability of the product since license "expiration" (failure) prevents the agent from updating.

What needs improvement?

This latest version upgrade/migration over the last year has been atrocious.

There have been numerous support issues and calls with Sr. VPs at Symantec, who were always understanding about the problems, but the product has proven unreliable to install and manage. The protection itself seems as solid, but if devices are losing their licensing without notice for no reason, it's only a matter of time before they become compromised.

The bottom line is that when it comes to management, reliability of management, reporting, alerting, installation, and licensing, if these don't work reliably you can't trust the product's security capability.

What do I think about the stability of the solution?

I've seen way too many outages and "maintenance" events in the last year on the new platform to consider it stable.

What other advice do I have?

This latest version has proven unreliable for management and installation.

I would no longer recommend this product as a viable security solution.

Disclosure: My company has a business relationship with this vendor other than being a customer: I'm currently a Symantec partner/resller as an MSP but will be replacing Endpoint Protection with another solution in the immediate future.
PeerSpot user
Buyer's Guide
Download our free Symantec Endpoint Security Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2024
Buyer's Guide
Download our free Symantec Endpoint Security Report and get advice and tips from experienced pros sharing their opinions.