Try our new research platform with insights from 80,000+ expert users
VMware Carbon Black Cloud Logo

VMware Carbon Black Cloud pros and cons

Vendor: Broadcom
4.1 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

VMware Carbon Black Cloud efficiently isolates endpoints remotely and performs forensic analysis without extra scripts.
Incident response features provide enhanced logging and data analysis for quick identification and resolution of security issues.
Context and scope understanding during incident response allows for rapid containment to minimize impact.
Carbon Black ensures ransomware is stopped before spreading, enhancing security posture.
Lightweight design and real-time protection offer minimal impact on end-users while securing PCs worldwide.

CONS

VMware Carbon Black Cloud's threat intelligence feed could use some fine-tuning, including difficulty in integrating FS-ISAC threat indicators into alliance feeds.
Adding custom watchlists is complicated, and the software should embrace YARA for rule creation.
Setup is complex and poorly documented, often necessitating Professional Services for troubleshooting during upgrades, especially with certificates and web services on a Linux platform.
There are concerns about deployment compatibility, specifically that VMware Carbon Black Cloud's latest version wasn't compatible with the latest Red Hat version, posing updates challenges.
Technical support, particularly in regions like the Middle East, is lacking, requiring more effective and timely assistance.
 

VMware Carbon Black Cloud Pros review quotes

it_user835119 - PeerSpot reviewer
Technical Support Specialist at a financial services firm
Mar 11, 2018
We are able to remotely isolate exploited endpoints in seconds and perform a live deep dive of any endpoint into its running processes (as necessary) without the need for extra scripts.​
it_user835122 - PeerSpot reviewer
Cyber Security Manager at a insurance company with 51-200 employees
Mar 11, 2018
The enhanced logging and data analysis of the incident response and investigation components allowed us to quickly identify and resolve security issues before they could spread.
it_user870717 - PeerSpot reviewer
Consulting IT Architect
May 10, 2018
Carbon Black Cb Response excels at providing context to indicators when responding to incidents. It allows responders to understand the entire scope of an incident and quickly contain it to minimize impact and disruption.
Learn what your peers think about VMware Carbon Black Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,259 professionals have used our research since 2012.
Security83d6 - PeerSpot reviewer
Security Analyst at a financial services firm with 10,001+ employees
Mar 11, 2019
The most valuable features are the threat-hunting and the batch console.
CBresponse677 - PeerSpot reviewer
Cyber Defense Consulunt at a security firm with 11-50 employees
Jul 21, 2019
The market information they gather from the community is really good. Their configuration capabilities are good.
SeniorIn8d7c - PeerSpot reviewer
Senior Information Security Specialist at a tech services company with 1,001-5,000 employees
Jul 1, 2019
Integration and scalability are the most valuable.
it_user1009236 - PeerSpot reviewer
SOC Analyst at a tech services company with 201-500 employees
Jul 1, 2019
They're highly stable in comparison with other solutions I have.
IT
Group CIO at a construction company with 10,001+ employees
Jul 2, 2019
Carbon Black insures the probability that any ransomware will be stopped before spreading.
MA
Senior Software Developer Engineer at Diyar United Company
Aug 7, 2019
The most valuable feature is its ability to seek out abnormal activity and to create alerts.
reviewer1259415 - PeerSpot reviewer
Senior Manager at a financial services firm with 1,001-5,000 employees
Feb 13, 2020
The detection response and quarantining are very good features.
 

VMware Carbon Black Cloud Cons review quotes

it_user835119 - PeerSpot reviewer
Technical Support Specialist at a financial services firm
Mar 11, 2018
The threat intelligence feed could use some fine tweaking.
it_user835122 - PeerSpot reviewer
Cyber Security Manager at a insurance company with 51-200 employees
Mar 11, 2018
The biggest issue I encountered was one where old logs were not being overwritten as expected so the system drive kept filling up from time to time. However, support was usually quite responsive and happy to jump on a remote session to take a look at it for us. That log bug has probably been resolved with an update by now.
it_user870717 - PeerSpot reviewer
Consulting IT Architect
May 10, 2018
The solution needs to simplify the process of adding custom watchlists, as well as embrace YARA for rule creation.
Learn what your peers think about VMware Carbon Black Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,259 professionals have used our research since 2012.
Security83d6 - PeerSpot reviewer
Security Analyst at a financial services firm with 10,001+ employees
Mar 11, 2019
They need to improve the batch console. It needs more capabilities. We are limited by the ones it provides...
CBresponse677 - PeerSpot reviewer
Cyber Defense Consulunt at a security firm with 11-50 employees
Jul 21, 2019
They have different products, but if we wanted to take their protection and their EPR, then we would need to have two agents
SeniorIn8d7c - PeerSpot reviewer
Senior Information Security Specialist at a tech services company with 1,001-5,000 employees
Jul 1, 2019
It's not simple.
it_user1009236 - PeerSpot reviewer
SOC Analyst at a tech services company with 201-500 employees
Jul 1, 2019
The dashboard should be more user-friendly.
IT
Group CIO at a construction company with 10,001+ employees
Jul 2, 2019
The cloud console has a lot of bugs and issues in the analysis part.
MA
Senior Software Developer Engineer at Diyar United Company
Aug 7, 2019
It's not highly available, so you have to have a core server. If the primary server goes down, you need a new one. It's not available at the same time, however. It's not automatically swapped from one server to another.
reviewer1259415 - PeerSpot reviewer
Senior Manager at a financial services firm with 1,001-5,000 employees
Feb 13, 2020
The product detects too many false positives initially and it could integrate better with other security solutions.