No more typing reviews! Try our Samantha, our new voice AI agent.
Johnathan Bodily - PeerSpot reviewer
Technical Engineer at Cloud 1 Solutions
Real User
Top 20
Mar 2, 2025
Ensures ransomware protection and reduces phishing chaos
Pros and Cons
  • "It's easy to use in regards to reducing attack surfaces."
  • "The time saved from dealing with ransomware nonsense is invaluable."
  • "Identifying areas of improvement is challenging, however, perhaps adding a few more built-ins could help."
  • "It is a little frustrating on my end since I like to go as quickly as I possibly can, and it slows me down."

What is our primary use case?

I use ThreatLocker at a bank and at a trucking company mainly because one has been hit with ransomware a few dozen times, and for the other, we just wanted to ensure it never got hit. It has actually stopped threats in their tracks at the trucking company. We haven't had a problem yet, so thankfully, nobody randomly clicks on things. 

At the other company, there are 300 employees in a warehouse, and only two of them are computer literate, so they click on everything. It has been very helpful in reducing the madness that comes with phishing and random malware or ransomware.

How has it helped my organization?

ThreatLocker has been excellent for reducing the issues with ransomware and malware, keeping end users in check, and ensuring they have to request access for certain actions. This process involves verification for necessity, particularly when considering VPN bypasses.

What is most valuable?

The application control has been great so far, and while I am still exploring the network access controls, I unfortunately don't have access to one module I would love to have due to licensing restrictions. 

It's easy to use in regard to reducing attack surfaces. For me, it's a piece of cake. We can have something approved within 30 seconds, thanks to the mobile app.

We haven't eliminated security solutions. We just add to it, and ThreatLocker has been a great addition. We also have Kaseya and ThreatLocker as a supplement to that. It's useful. They have overlap, and we look at the overlap as a good thing.

It's helped your organization save on operational costs or expenses by ensuring that many fewer hours are spent dealing with ransomware nonsense. I cannot count the amount of hours that I personally have not had to put in to recovering an environment from a ransomware event. The last big one took us about three weeks to completely recover from. Since we've grouped ThreatLocker in, the management of that whole setup has gone down to just daily help desk tasks and general server maintenance instead of having the whole system on fire. There are probably thousands of hours of saved time between our teams. It's been great so far. 

ThreatLocker Zero Trust Endpoint Protection Platform's ability to block access to unauthorized applications is great. It's my biggest protection, the blocked applications. In a lot of cases, you go to install something yourself that you need for management, and it comes in and says, nope. And then I have to log into the portal and approve it. I get our other guys saying, hey, why are you trying to approve something? Any of the tools that I'm using on a day-to-day basis that haven't been in the environment during the whole learning mode initially, I could go through and set extensions and all that. So, while it's a headache on that end, the amount of saved time I can't even count. It is a little frustrating on my end since I like to go as quickly as I possibly can, and it slows me down. However, that's a really good thing.

Depending on the site, it can save a lot of time and cut down headaches. It's likely saved a week's worth of time. 

It's cut down the amount of sever help desk tickets. Those have become minimal. 

What needs improvement?

Identifying areas of improvement is challenging, however, perhaps adding a few more built-ins could help. There are items updated a couple of times a year, especially in the banking industry, where some applications could benefit from built-ins. While it's understandable why they aren't available, manually building rules and adding hashes takes extra time. Some built-ins are reportedly in progress and should eventually be available.

Unfortunately, I lack access to one component due to licensing requirements, however, it is what it is.

Buyer's Guide
ThreatLocker Zero Trust Platform
May 2026
Learn what your peers think about ThreatLocker Zero Trust Platform. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
899,324 professionals have used our research since 2012.

For how long have I used the solution?

I have used the solution for almost two years now.

What do I think about the stability of the solution?

I have yet to encounter any problems with it, apart from end users complaining that they can't install whatever they want, which is exactly the desired outcome.

What do I think about the scalability of the solution?

I have not had any issues at all. At one site, I started off with just the servers, and within a month and a half, I set up the entire company with ThreatLocker. I expanded from maybe ten to fifteen initial installs to well over one hundred in two weeks. It was super simple.

How are customer service and support?

I joined a conference call with a colleague and asked a question. The detailed explanation provided by the representative was impressive, showing features I was unaware of. It encouraged me to explore the training materials in ThreatLocker University. 

Which solution did I use previously and why did I switch?

I have been researching various options, and if I remember correctly, Kaseya recommended ThreatLocker. I have contacts at Kaseya, and there are ongoing discussions about new solutions. The suggestion to try ThreatLocker led us to run a trial, initially planned for thirty or ninety days. However, within two weeks, I decided to license it for the entire company due to its impressive performance.

How was the initial setup?

The initial deployment took me about a day to figure out how to do the initial deployment correctly and it has been solid since. In terms of implementation, I have no complaints at all.

We've got data RMM that we can use to push it out. We can use the VSA RMM to push it out. We can push it via GPO. So it's super easy to do. The only time we have to manually install it is on systems that we haven't plugged into a network yet.

What was our ROI?

The return on investment is significant as I am now recommending it to all our clients, even those with just one or two servers. It keeps malware, Trojans, and ransomware at bay. It is a worthy investment, reducing management headaches and cutting down on hours for minimal investment.

Which other solutions did I evaluate?

We probably looked at about a dozen options.

What other advice do I have?

Overall, I would rate it probably a nine out of ten. I don't like to give a perfect score if it doesn't directly benefit someone within the company. It should be a ten since I've had no problems with it, and it is as rock-solid as expected. 

The time saved from dealing with ransomware nonsense is invaluable. We spent about three weeks recovering from the last significant attack; however, since implementing ThreatLocker, management has been reduced to daily help desk tasks and server maintenance, saving our team thousands of hours.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Moiz Patel - PeerSpot reviewer
Technical Support Engineer at a consultancy with 51-200 employees
Real User
Top 5Leaderboard
Jun 2, 2026
Granular controls have secured every software install and protect users from risky applications
Pros and Cons
  • "I think the biggest expense that you can save is an attack from an outsider."

    What is our primary use case?

    As a managed services provider, my use case involves monitoring when managed users attempt to install any kind of file, whether malicious or benign. ThreatLocker Zero Trust Platform generates an alert whenever this occurs. After checking whether the file is malicious or benign, I as an admin will approve or disapprove the request. I check whether the file, application, or whatever the path is, is benign before we allow the user to install it.

    What is most valuable?

    I appreciate how ThreatLocker Zero Trust Platform can specify the exact path that you want to give access to for the user. Rather than just a file, you can specify an entire path in the folder, straight from the folder to the file, pinpointing the exact file that you want to install. You can pinpoint that and only give access to the user to install that, and nothing else in the folder.

    The allow list feature in ThreatLocker Zero Trust Platform is very handy. When you specify an exact path, it will only allow you to go there, and you cannot go anywhere else in the folder to install any other file but that exact file that we have specified. This is where the allow list feature is particularly useful.

    The elevation feature in ThreatLocker Zero Trust Platform is basically approving the user to elevate to local admin mode, wherein they can do whatever they want in the software. Depending on the kind of software, if it is an in-company, company-made software that is bound to the company, only then do we allow the elevate feature. Otherwise, for external software, downloads, and installations, we do not allow elevation. We do not elevate the users and give them local admin access.

    What needs improvement?

    I do not see any improvements needed for ThreatLocker Zero Trust Platform. I think perhaps they could make the dashboard a little more appealing, but other than that, I do not see any issues with the software and how you use it.

    To be honest, I have not actually explored the entire ThreatLocker Zero Trust Platform dashboard. I do not think I am qualified enough to tell you if there can be improvements or if I want to see something new, because I myself have not explored the entire dashboard. I just recently discovered the different features that were explained to me. I just recently found out that those features are also there. I do not think I am qualified to tell you that this should be added or that should be removed.

    For how long have I used the solution?

    I have been using ThreatLocker Zero Trust Platform for a year and a half.

    What do I think about the stability of the solution?

    I have never had an issue with ThreatLocker Zero Trust Platform being down or not being accessible or any problems. I have not encountered any sort of problems with ThreatLocker Zero Trust Platform where it is not accessible or it is not doing something that I want it to do.

    What do I think about the scalability of the solution?

    There are no specific issues or complaints regarding ThreatLocker Zero Trust Platform's scalability. The deployment and scalability process appears to be straightforward.

    Which solution did I use previously and why did I switch?

    Before using ThreatLocker Zero Trust Platform, I have only used Defender for Endpoint, which is Microsoft's solution.

    How was the initial setup?

    For all the deployments, I push it through Intune. You make a hash file and push it through Intune and I do not think there is a lot of fuss. It is just as simple as every other application or software that we make policies for in Intune.

    What was our ROI?

    I think the biggest expense that you can save is an attack from an outsider. If your data is not going outside and if you cannot be bullied or your data is not being kidnapped by external attackers, I think that is the biggest benefit of ThreatLocker Zero Trust Platform. I do not think you can ask for any more than that.

    Which other solutions did I evaluate?

    I have not used an exact alternate to ThreatLocker Zero Trust Platform. If you could ask me about the closest technology or software that I have used to ThreatLocker Zero Trust Platform, it would be Cisco Umbrella, wherein you can specify the links, websites, and data that you do not want your users to access. I think the closest thing to ThreatLocker Zero Trust Platform that I have used is Cisco Umbrella.

    Again, just as mentioned, if you are pushing it through Intune, it is just another application or software that you are pushing.

    What other advice do I have?

    If you are implementing ThreatLocker Zero Trust Platform, I would suggest you to explore everything. I am sure that it is inclusive of everything from endpoint management to where the user is trying to install something or trying to delete something. The entire managed endpoint, I think the company that is implementing it should utilize all and explore all the aspects of whatever ThreatLocker Zero Trust Platform has to offer. I would rate this product a ten out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. MSP
    Last updated: Jun 2, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    ThreatLocker Zero Trust Platform
    May 2026
    Learn what your peers think about ThreatLocker Zero Trust Platform. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
    899,324 professionals have used our research since 2012.
    Musah Ibrahim - PeerSpot reviewer
    Senior System Administrator at Molders Group Limited
    Real User
    Top 20
    Nov 14, 2024
    Highly effective at controlling applications and securing our systems
    Pros and Cons
    • "The application whitelisting feature allows us to block and manage approved applications effectively. It ensures that no one can install an application on our systems unless it is approved by me, which is very efficient."
    • "ThreatLocker Protect has improved my organization greatly."
    • "The support could be quicker. There are times when there is a delay in getting a response. This is problematic when immediate attention is needed."
    • "The support could be quicker."

    What is our primary use case?

    I work for an architecture firm. We use ThreatLocker Protect to protect the company's systems from unknown malware by blocking unapproved applications. We encounter a lot of malware and ThreatLocker has been able to help with that.

    How has it helped my organization?

    As an architecture firm, we rely on TAISE’s Cybersecurity-as-a-Service (CaaS) to keep our systems safe from malware threats. TAISE introduced us to ThreatLocker, which has become essential in safeguarding our infrastructure by blocking unapproved applications and defending against unknown malware. Given our exposure to frequent malware, ThreatLocker, through TAISE's expert implementation, has proven invaluable

    ThreatLocker Protect is very simple and easy to understand. You do not need much technical knowledge to be able to use it. It is very good. Anybody with a bit of IT knowledge is able to handle it.

    Ringfencing adds an extra layer of defense. If an application is compromised, you can just exclude the computer and do your troubleshooting and find out what the problem was. It goes hand in hand with application whitelisting. It has been very helpful. It adds an extra security system which is very much needed for our infrastructure.

    ThreatLocker Protect has improved my organization greatly. Before using ThreatLocker Protect, we experienced a malware attack that caused significant damage, corrupting many of our files. Since implementing ThreatLocker Protect, we have not faced any such issues, and our operations have been smooth.

    We were able to realize its benefits immediately. No user can install any unknown applications or unauthorized applications on their own. I have been able to manage my systems effectively without any malware.

    ThreatLocker Protect has reduced our help desk tickets by about 40%, as every software they use is approved by me before use, limiting unauthorized installations.

    ThreatLocker Protect has freed up a lot of time. I do not have to do much with the help desk because our systems are protected with ThreatLocker Protect.

    What is most valuable?

    The application whitelisting feature allows us to block and manage approved applications effectively. It ensures that no one can install an application on our systems unless it is approved by me, which is very efficient.

    It is very easy to use. When a user sends a request, you can go to the dashboard to view the application that the user wants you to approve. If you are okay with the application, you just click the Approve button to approve. It is very easy.

    What needs improvement?

    The support could be quicker. There are times when there is a delay in getting a response. This is problematic when immediate attention is needed.

    The stability can also be better.

    For how long have I used the solution?

    I have been using ThreatLocker Protect for the past three years.

    What do I think about the stability of the solution?

    Stability can be improved as there are times it goes down or requires management to adjust policies. I would rate stability a six out of ten.

    What do I think about the scalability of the solution?

    It is scalable to an extent, depending on where it is used. I would rate scalability a seven out of ten.

    We have one location but multiple departments. Overall, we have 25 users.

    Our company is small. I know which applications each user is supposed to use and what they need. Once I get a request, I go over to the application they need to install. If it aligns with the work they do, I approve it.

    How are customer service and support?

    I would rate their support a five out of ten. It could be better, especially with response times.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    We did not use another solution before.

    How was the initial setup?

    The initial setup was straightforward. Its deployment took about a week.

    What was our ROI?

    Our return on investment with ThreatLocker is about 20%.

    Its time to value was immediate.

    What's my experience with pricing, setup cost, and licensing?

    The pricing is reasonable and normal. I do not have any problems with the cost.

    What other advice do I have?

    I would recommend ThreatLocker Protect to other users as it is a very important tool for IT administrators like me. It helps manage user access and secures the system efficiently.

    I would rate ThreatLocker Protect an eight out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Information Cybersecurity Technology Specialist at Freez.it
    Real User
    Top 20
    Mar 2, 2025
    Efficient security management has reduced costs and eliminated ransomware threats
    Pros and Cons
    • "Ringfencing is a valuable feature."
    • "With ThreatLocker, we don't have shadow IT, and it has reduced ransomware."
    • "It would be beneficial if it became more recognized in the EU to gain respect."

    What is our primary use case?

    I primarily use it on servers. We deal with smaller customers, and they don't always have the money to get it on every endpoint. The main thing exposed to the internet is, of course, the server, RDP, and other functions. 

    We have some customers that have it on the endpoint. In the past few years of using ThreatLocker, I haven't experienced ransomware on servers. However, there are small occurrences on endpoints when they're not using ThreatLocker.

    How has it helped my organization?

    With ThreatLocker, we don't have shadow IT, and it has reduced ransomware. 

    We have a lot of companies concerned with compliance. They have an application list, and anything outside of that application list is not allowed. ThreatLocker makes that really easy for us since you just allow what they need, and no one can run anything else.

    What is most valuable?

    Ringfencing is a valuable feature. If someone gains access to something or some end user attempts to run malicious PowerShell commands to download malware, it simply doesn't allow it. It's like saying, I'm not permitted to reach out to this. 

    ThreatLocker eliminates shadow IT and reduces ransomware. We have many companies that need compliance. They have an application list, and anything outside of that list is not allowed. ThreatLocker makes this easy by allowing only what we need, preventing us from running anything else. 

    Previously, I used AppLocker, a Windows tool, which is a lot of work to manage. ThreatLocker reduced work, allowing us to hire fewer people for this job. The time saved from not having to do recovery when malware runs, which can't happen with ThreatLocker, also saves money.

    It's fairly easy to use. It has a learning curve. However, if you go to the university, you should be fine. And if you don't know something, you can just click the chat button. You'll be chatting with someone in 30 seconds.

    It reduces work. It helps us save on operational costs that way. You can hire fewer people or move people onto other stuff. People can be moved to other tasks. We likely save one FTE a year, so it saves us around 30,000 euros.

    We can block access very well. They are doing their job. 

    It reduces the amount of time a ticket takes to action. 

    What needs improvement?

    It doesn't really have to do with ThreatLocker as a company. It's really annoying when other companies don't sign their executables with a certificate, requiring new rules for new files. It would be beneficial if it became more recognized in the EU to gain respect. That's about the only issue I can think of.

    For how long have I used the solution?

    I have used the solution for a little bit more than three years now.

    What do I think about the stability of the solution?

    It's really stable. Once deployed, it downloads the policies locally, so even if the computer doesn't have internet, it doesn't matter. It still works.

    What do I think about the scalability of the solution?

    The scalability is great. I can put as many endpoints in it as I like.

    How are customer service and support?

    The customer service is very good. If I need someone, I hit the chat button, and 30 seconds later, there is someone there to help me.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    I used the Windows built-in AppLocker, and that was it.

    How was the initial setup?

    We use RMM to deploy the agent.

    The initial setup had its ups and downs. That was all on us. We tried to roll it out for everyone at the same time. I'd advise against that.

    What about the implementation team?

    I had a Solutions Engineer help me. He was from ThreatLocker.

    What was our ROI?

    I would estimate savings equivalent to one person per year, which is about 30,000 euros in our country. Not dealing with recovery when malware runs, as it can't run, saves a lot of time and money. The subscription includes help desk time, saving us even more.

    What's my experience with pricing, setup cost, and licensing?

    The setup is quite cheap, considering what it does.

    Which other solutions did I evaluate?

    I didn't evaluate a different solution before choosing this one. Afterwards, I looked at Cyberfox for the elevation control, however, it was unsatisfactory.

    What other advice do I have?

    I rate the solution a ten out of ten. 

    If something isn't working, you get a helpdesk ticket. If they don't know the answer, they escalate and eventually hop on a call with you without automatically closing tickets. It's been great. My Solutions Engineer has been fantastic. Even as he's moved up within the company, I can still call him.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    CTO at Zettabytes
    Real User
    Top 20
    Mar 2, 2025
    Implementation ensures strong customer protection and quick support
    Pros and Cons
    • "The deployment is very easy."
    • "A few years back, we had an attack on one of our biggest clients."
    • "Some reporting areas need improvement. We need to generate more reports."

    What is our primary use case?

    Many of our firms are currently using ThreatLocker, and they have been very happy with it. It can block unauthorized software from being downloaded. 

    How has it helped my organization?

    A few years back, we had an attack on one of our biggest clients. After that, we implemented ThreatLocker. For the last couple of years, there have been no issues or attacks. This has been really helpful.

    What is most valuable?

    Currently, we are not using the full range of modules, however, we are using ThreatLocker elevation. That's really good. 

    The deployment is very easy.

    We've been able to save some operational costs and expenses by using this product. However, the main thing is that it protects our customers. 

    The zero-trust endpoint availability is good. It can block unknown applications straight away.

    We have reduced help desk tickets. It helps with management. We have a good team in place. 

    What needs improvement?

    Some reporting areas need improvement. We need to generate more reports. That area should be improved. We'd like reporting on if someone tried to install software, we'd like to be able to generate reports on what was blocked.

    For how long have I used the solution?

    I have been using ThreatLocker for the past four years.

    What do I think about the stability of the solution?

    Stability is good; it is a growing business. Over the last four years, it has grown significantly.

    What do I think about the scalability of the solution?

    Scalability is good. There has been no impact in the last couple of years.

    How are customer service and support?

    Support is good, with very quick support from Cyber Heroes if any staff requires help. From our side, they are really helpful.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    We did not use another solution previously.

    How was the initial setup?

    The initial setup is good; deploying is very easy.

    What about the implementation team?

    We are managing the implementation ourselves.

    What was our ROI?

    It's protecting our customers. That is the main thing. That's our ROI.

    What's my experience with pricing, setup cost, and licensing?

    In the last couple of years, the price has remained the same. Nothing has changed, and it's good. I hope it will not increase soon.

    Which other solutions did I evaluate?

    We did not evaluate other options. 

    What other advice do I have?

    The overall rating of the solution is eight out of ten. We need to improve the reporting side, including reporting and generating reports. That area needs to be improved.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Microsoft Azure
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    Security team architect at TOTVS
    Real User
    Top 20
    Mar 2, 2025
    Security control and audit features have increased our protection and customer confidence
    Pros and Cons
    • "The control list is the best feature. For our company, it provides value to our customers since they can see we are improving our security."
    • "We are seeing a return on investment, especially with our managers and customers."
    • "There could be options for handling a bulk amount of machines simultaneously."
    • "I have encountered some problems with stability, however, they are resolved quickly."

    What is our primary use case?

    We're currently deploying 15,000 machines. For us, it is quite easy, however, the problem is that our environment is complicated to deploy due to many customizations. That said, with ThreatLocker, it is not a problem. 

    How has it helped my organization?

    It's getting better in terms of cost and transparency. We can see security improving and can show our evolution. 

    What is most valuable?

    The control list is the best feature. For our company, it provides value to our customers since they can see we are improving our security. It also helps us understand what is happening in the machines with notify audits. The solution shows evolution and helps us troubleshoot, even when installed on only some machines.

    We can reduce attack surface. We have over 1500 sysadmins, and without it, it was hard to control permissions.

    We hope in the future it will help us reduce costs.

    We can block access to unauthorized applications. With all of the sysadmins, it had been quite difficult to block everything manually. We have more control over our environment now.

    It helps us to see what's happening in the environment and can help us troubleshoot. Once we install across all machines, we can see better what's happening. 

    What needs improvement?

    There could be options for handling a bulk amount of machines simultaneously. Randomizing the actions instead of executing everything at once would be beneficial. This would apply to our policies, particularly for the container and Linux versions.

    For how long have I used the solution?

    We have been using it for about one year and six months, almost two years.

    What do I think about the stability of the solution?

    I have encountered some problems with stabilitiy, however, they are resolved quickly. It is not really a significant issue for me, as they are solved very fast.

    What do I think about the scalability of the solution?

    The scalability is okay for us. We do not have any problems.

    How are customer service and support?

    The customer service is very good and very fast.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    Previously, we used another solution, including a solution from ManageEngine. We switched to ThreatLocker because we felt secure using it, especially with Cyber Heroes and the learning mode.

    What about the implementation team?

    The implementation was done in-house by me.

    What was our ROI?

    We are seeing a return on investment, especially with our managers and customers. We are protecting them and enhancing our security. They all feel safer with this solution.

    What's my experience with pricing, setup cost, and licensing?

    The setup cost is good, but money in Brazil is quite expensive. Despite the Brazilian economic issues, it is manageable when considering the dollar.

    Which other solutions did I evaluate?

    We just have one alternate solution in mind, which includes control mechanisms. We tested some others but liked this one a lot. We need to finish the first part.

    What other advice do I have?

    My overall product rating is nine out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Tier 1 IT Engineer at a retailer with 11-50 employees
    Real User
    Top 20
    Mar 2, 2025
    There are overall fewer breaches, as nothing can be run without prior approval
    Pros and Cons
    • "Being able to protect and trust nothing by default, known as zero trust, is the most important feature to me."
    • "The user experience could be improved."
    • "The user experience could be improved. Most complaints we get are based on users wanting certain functionality."

    What is our primary use case?

    I have a lot of clients, and I am responsible for protecting them by ensuring their environments are safe and up-to-date.

    How has it helped my organization?

    The major benefit is just fewer breaches overall. No one can run anything without it being approved first. ThreatLocker is helping companies protect themselves.

    What is most valuable?

    Being able to protect and trust nothing by default, known as zero trust, is the most important feature to me. The major benefit is fewer breaches overall, as nothing can be run without prior approval. This helps my company protect its data and secure itself effectively.

    Attack surfaces are easy to control. It's easy to deploy and protects very well.

    We've been able to consolidate security tools using ThreatLocker. We used to use SentinelOne and it wasn't doing exactly what we wanted. It wasn't detecting anything. 

    It's great at blocking access to unauthorized applications. By default, it trusts nothing. 

    We do get more tickets for application requests, however, that's not a bad thing, since it's protecting our environment. 

    What needs improvement?

    The user experience could be improved. Most complaints we get are based on users wanting certain functionality. For the most part, built-in applications are pretty good, however, having more would be beneficial.

    For how long have I used the solution?

    I have been using it for about two to three years now.

    What do I think about the stability of the solution?

    It has great stability without any negative aspects.

    What do I think about the scalability of the solution?

    I believe it's scalable, whether the client is small or large. It is beneficial regardless of the size.

    How are customer service and support?

    I have experienced amazing support. Whenever I have an issue, I click the chat button, and someone is always available to assist me. Escalations go smoothly, and I have never encountered support issues.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I used to use a tool called SentinelOne before switching to ThreatLocker. SentinelOne was not meeting my needs and did not detect issues effectively. I now also use Huntress, but ThreatLocker has been a huge help by blocking anything unapproved.

    How was the initial setup?

    I deployed it with our RMM, which made it really easy. It was much simpler than it would be with a different program. I set up the tenant, changed a few settings, checked a box, and deployed it. The process was fast and efficient, with the devices appearing quickly and no slowness.

    What was our ROI?

    I would stress the importance of saving companies from breaches. The cost versus benefit of ThreatLocker is significant, as its small cost offers great advantages. If something were to happen without ThreatLocker, the cost would be huge, and thus, having it is definitely worth it.

    What other advice do I have?

    In meetings, they mention 'set it and forget it.' While this can be efficient, it might leave applications unaudited over time, possibly opening vulnerabilities. Regular auditing and reviews would enhance security. 

    I give it a nine out of ten overall, recognizing there is room for improvement.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Technical Director at a tech services company with 11-50 employees
    Real User
    Top 20
    Mar 5, 2026
    Consolidated security tools have simplified compliance and reduced daily operational stress
    Pros and Cons
    • "Network Control, Application Control, and Storage Control impact my daily workflow significantly, as they give me operational freedom with cyber hero support, reduce the anxiety I have day-to-day, and have improved my overall general mental health because of all of the never feeling alone being reduced to near zero, with a whole team of cyber heroes that are just jumping to help me, and the turnaround is literally a minute in most cases."
    • "I have several clients in the last few months that have definitely caused a problem where a domain controller completely destroyed replication once Network Control was put in place, and now our AVD servers in Azure also lose domain trust occasionally and it is intermittent, making it rather hard to prove to ThreatLocker Zero Trust Endpoint Protection Platform that they really need to look at when there is a VPN in the middle of a domain controller."

    What is our primary use case?

    My main use case for ThreatLocker Zero Trust Endpoint Protection Platform was Application Control, but now I use it as a full suite of protection tools.

    A specific example of how I use ThreatLocker Zero Trust Endpoint Protection Platform as a full suite of protection tools in my organization is that it helps us perform compliance needs for companies and also Web Control, Application Control, and Network Control as a true zero-trust platform.

    How has it helped my organization?

    It has made a positive impact by consolidating our tools; we used to have too many tools and now we really only need ThreatLocker Zero Trust Endpoint Protection Platform, a backup solution, and our RMM.

    I have seen benefits from consolidating my security tools down to just ThreatLocker Zero Trust Endpoint Protection Platform, a backup solution, and my RMM, as it has saved me time, saved my clients money, and saved us headaches.

    What is most valuable?

    The best features ThreatLocker Zero Trust Endpoint Protection Platform offers are Network Control, Application Control, and Storage Control.

    Network Control, Application Control, and Storage Control impact my daily workflow significantly, as they give me operational freedom with cyber hero support, reduce the anxiety I have day-to-day, and have improved my overall general mental health because of all of the never feeling alone being reduced to near zero, with a whole team of cyber heroes that are just jumping to help me, and the turnaround is literally a minute in most cases.

    What needs improvement?

    ThreatLocker Zero Trust Endpoint Protection Platform can be improved by addressing issues with Network Control better.

    I have several clients in the last few months that have definitely caused a problem where a domain controller completely destroyed replication once Network Control was put in place, and now our AVD servers in Azure also lose domain trust occasionally and it is intermittent, making it rather hard to prove to ThreatLocker Zero Trust Endpoint Protection Platform that they really need to look at when there is a VPN in the middle of a domain controller.

    For how long have I used the solution?

    I have been using ThreatLocker Zero Trust Endpoint Protection Platform for almost three years.

    How are customer service and support?

    I do not wish to add anything else about the features or the support I receive.

    How would you rate customer service and support?

    Positive

    What other advice do I have?

    I would rate ThreatLocker Zero Trust Endpoint Protection Platform a nine out of ten, but it would be ten stars if they would just get this last thing solved for us. My overall rating for this product is nine out of ten.

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Mar 5, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    Download our free ThreatLocker Zero Trust Platform Report and get advice and tips from experienced pros sharing their opinions.
    Updated: May 2026
    Buyer's Guide
    Download our free ThreatLocker Zero Trust Platform Report and get advice and tips from experienced pros sharing their opinions.