Carbon Black Endpoint is an endpoint security and "next-gen antivirus (NGAV)" that uses machine learning and behavioral models to analyze endpoint data and uncover malicious activity to stop all types of attacks before they reach critical systems.
N/A
Cisco Secure Endpoint
Score 9.3 out of 10
N/A
Cisco Secure Endpoint is a comprehensive, cloud-managed endpoint security solution designed to protect devices from advanced malware and cyber threats throughout the entire attack lifecycle—before, during, and after an attack. It offers powerful prevention capabilities to identify and stop threats before they compromise your systems, using multifaceted techniques including risk-based vulnerability management and posture assessments. The solution provides deep visibility and advanced detection…
Symantec was very old school like for a constantly evolving digital world. Carbon Black Endpoint appeared to be both more user friendly and also have detection tools we found more useful to us than Symantec.
CB Defense offered a more comprehensive way to manage and protect all our endpoints irrespective of their presence on/off our LANs. It also gives our administrators dynamic visibility into the activity/processes running on our endpoints. The other solutions would require either …
We evaluated 3 other competitors and determined that Cb Defense was the best "bang for the buck" when it comes to Next-Generation Anti Virus. Their support (and sales) teams have been very helpful and offered a tremendous level of transparency. Our sales representative went …
We like the visibility in Defense. The other two products would alert on a potential issue, but details of what actually occurred to cause the alert weren't readily apparent. Defense provides all the detail of where/what/who was doing something that was alert worthy. It also …
Cb is cloud-based and has a more advanced policy management. It also has better forensics information. Cost was similar, but Cb added cost savings in terms of IT management resources. We also have the ability to talk directly with engineers and have input on feature updates.
Some of the other products did not allow you to whitelist items on a Mac. We are a heavy Mac shop so this was a requirement. Cb Defense had superior reporting, making it easy to track what was happening on a machine and how to respond. We ran known malware and zero days …
Cisco Secure Endpoint is easier to deploy and use versus Trend Micro Deep Security. The interface is less intuitive (possibly subjective) when compared to Cisco Secure Endpoint, which required more training for support staff. Also the integration is not as good with Trend. …
Cisco Secure Endpoint provides better overall support and detection compared to other products used. Strong visibility and a strong range of tools when researching an issue to find either information or resolution. Dashboards are also a lot cleaner than most products and easier …
Best tool if you have a heavy Cisco product suite for Intergrations. Send data to our SIEM (QRADAR) well and is easy to deploy with our SCCM. The groups and polices are helpful to customize protection for different endpoint needs.
Huntress is evaluating endpoints from a different perspective. SentinelOne would be an alternative product. Cisco Secure Endpoint always shows up reasonably close to SentinelOne in overall protection. SentinelOne does offer a SOC option which dramatically adds to the …
We were using McAfee but the performance was not good and it consume a high memory. Cisco secure endpoint is very advanced and very lightweight for organizations. The configuration and management are very easy and centralized.
The integration with all the other Cisco platforms made AMP a clear front-runner. Crowdstrike and Sophos had no integration at all and Palo Alto required their firewalls be deployed. Again, as a Cisco Security customer, it made complete sense to leverage their AMP technology.
Compared to Malwarebytes Enterprise, AMP is significantly harder to configure, update, implement, use. The overall burden that AMP puts on the IT department is rather high.
Cisco Secure Endpoint is an advanced EDR solution that is highly effective and scalable. Our experience previously with MalwareBytes and Microsoft Defender was not horrible, but these products were not as effective and did not integrate well with our other security products to …
Cisco Advanced Malware Protection (AMP) for Endpoints is one of a wide spectrum of Cisco security products and is the first step that can bring you to start using Cisco AnyConnect and Cisco ISE to integrate with them.
Being all products of a similar nature, Cisco Advance Malware Protection stands out for its simplicity, low resource consumption, reporting, work dashboards and integration with the rest of the already installed suit.
Those are the most notable aspects, although the rest of the …
AMP is far superior to Symantec in my opinion. It is much more robust and customizable. It is much easier to manage systems and to spot trouble areas. Deploying and upgrading clients is much simpler. It is a much more lightweight client on the desktop. Overall a much better …
When looking for a Malware Protection for Endpoints, AMP was our first and only choice. We like the fact that Cisco has a whole line of security software that can work together and so our goal has been to use the Cisco Suite that includes Umbrella, Firepower, AMP. We are very …
Cb Defense works great to protect systems from known and unknown malware. It is simple to deploy and manage. You might run into some issues if you run a lot of unsigned applications or scripts in your IT environment. If that is the case, you can whitelist certain paths for your scripts to run. You can whitelist the individual applications and certs if you have them.
Cisco Secure Endpoint is well suited for keeping track of the many different and points that we have in our organization. All of these devices can easily be monitored with Cisco Secure Endpoint. It can monitor our servers and our desktops and laptops in our environment. It isn’t as appropriate for our student devices. However, those aren’t as critical since they are just Chromebooks.
It uses a thin, low-performance consuming, client.
It constantly monitors endpoint activity and processes, efficiently, and effectively blocking harmful apps.
It not only identifies and blocks apps known to be harmful, but prevents unknown, suspicious processes/apps from executing unless allowed in a defined policy.
We have only needed support on a couple occasions (which is a positive), but they weren't able to really resolve either issue.
This brings me to my second con, which is that we have only used three sensor packages (the installed client) and have had issues crop up with two out of three.
AMP is very difficult to use compared to other products we've seen. It's hard to understand why there are so many different logins for the various products that supposedly integrate with AMP. We had weekly phone calls for months to implement the product yet none of the IT department really enjoys using this product or feels comfortable with the accuracy of detections. The number of false positives is high.
Overall the support that we have received from Carbon Black has been a very positive experience. This was especially true when we were in the evaluation (POC) period and needed them to meet with us on a frequent basis. Additionally when we have had technical questions regarding deployment via SCCM, we were able to find the answers we needed by contacting their Support team.
In terms of technical support for Cisco Secure Endpoint, the support has been pretty good. All the cases I submitted were solved in a reasonable time frame, and it was a good experience. However, I find that not as many vendors have the expertise I would expect.
We evaluated 3 other competitors and determined that Cb Defense was the best "bang for the buck" when it comes to Next-Generation Anti Virus. Their support (and sales) teams have been very helpful and offered a tremendous level of transparency. Our sales representative went above and beyond to work with us on making sure that the pricing fit in our budget. One of the other competitors that we reached out to never even contacted us back so they were immediately eliminated as a possible AV solution.
Other products we use were, I think, well, nothing like Cisco Endpoint. There was Microsoft Defender. I think Sophos and CrowdStrike. I think the visibility and the security. We haven't had any issues with the system. Once it's been implemented, it works fine. The enhancements that come into play, we're benefiting from them. We're benefiting from the Telos threat intel, which is really good as well
It actually stooped a memory scraper from stealing credit card data from our POS system. The casino was bought from awhile back, so coming into this place 4 years ago, we had a flat network. Not good with POS System. Well, a memory scraper was released (employee downloaded a game) and Cb Defense just killed it... This was before a live response, so we pulled the system from the network.
I can't really say anything negative, at least from an ROI point of view.