TrustRadius: an HG Insights company

Sophos Intercept X

Score8.8 out of 10

210 Reviews and Ratings

What is Sophos Intercept X?

Sophos Endpoint Protection (Sophos EPP) with Intercept X is an endpoint security product providing an antivirus / antimalware solution that when upgraded with Intercept X or Intercept X Advanced provides advanced threat detection and EDR capabilities.

Media

1 / 3

Top Performing Features

  • Centralized Management

    Centralized management supporting multi-factor authentication, customized views, and role-based access control.

    Category average: 8.5

  • Infection Remediation

    Capability to quarantine infected endpoint and terminate malicious processes.

    Category average: 8.8

  • Malware Detection

    Detection and blocking of zero-day file and fileless malware.

    Category average: 9

Areas for Improvement

  • Vulnerability Management

    Vulnerability prioritization for fixes.

    Category average: 8.3

  • Hybrid Deployment Support

    Administrators should be able to choose endpoint security on-premise, cloud, or hybrid.

    Category average: 8.3

  • Anti-Exploit Technology

    In-memory and application layer attack blocking (e.g. ransomeware)

    Category average: 8.6

Seems to work well.

Use Cases and Deployment Scope

Intercept X is installed on all of our PCs and laptops, as well as some MacBooks.

Pros

  • Doesn't stress the CPU
  • Doesn't use too much RAM
  • Updates regularly
  • Is unobtrusive to the user.

Cons

  • The alerting could do with some work
  • Sophos central is a little clunky

Return on Investment

  • Its more of an insurance, unless you've had an attack it's difficult to do RoI
  • Our annual cost for 300 PCs and 25 servers is around £7000

Usability

Other Software Used

ManageEngine Endpoint Central, Auvik

Sophos Intercept X allows you to sleep at night.

Use Cases and Deployment Scope

We use Sophos Intercept X as our XDR and it works extremely well with seeing and blocking PUAs, blocking sites, and following rules we have set it place. The main issue we run into with Sophos is getting it integrated with other systems to have a single pane of glass. We also cannot see when scans have completed. Oftentimes when there is an event and we are trying to figure out the cause for and the support we need is behind a paywall.

Pros

  • Blocks access to sites that have a bad reputation
  • Follows Policies well
  • Blocked possible PUAs
  • Isolates machines that have a risk of infection
  • Has a decent dashboard for recent threats

Cons

  • Detailed Scan results
  • Letting us know when scans have completed
  • Allowing us to group machines and run continual scans at different times
  • Easier integration with other software

Return on Investment

  • Does a great job keeping employees from accessing inappropriate websites.
  • Blocked any software not deemed adequate for the company.
  • Lack of integration is a problem when trying to pinpoint when an issue happened and correlating it with other security software.
  • Often times legitimate websites are blocked, but there is no specific reason as to why. Just says it was blocked, but does not give a tag.

Usability

Alternatives Considered

Malwarebytes, Norton 360 and Cisco Secure Endpoint

Sophos Intercept X - Good Value and Great For SMBs

Use Cases and Deployment Scope

We use Intercept X as part of our MDR/MTR Solution.

It is the primary endpoint Security Solution that all Sophos is built on.

We required endpoint security that would integrate with our Sophos Firewall, Sophos Central cloud based management as well as our Managed Threat Response. We use it on over 200 endpoints of various types from PC's, laptops and persistent and non-persistent VDI Desktops. We use the Server Version for all of our Server VM's.

Pros

  • Easy to Install
  • Works Well with Non-Persistent VDI Desktops
  • Integrated with Sophos Central and Firewalls

Cons

  • For Non-Persistent VDI Desktops It Required a Deployment Script
  • Endpoint Heartbeat does not like going through an intermediate router

Return on Investment

  • It is a very cost effective solution. Pricing is good for what you get
  • The routine security issues that an come up on endpoints are handled automatically
  • Good reporting on security events.

Usability

Alternatives Considered

Bitdefender GravityZone

Sophos Intercept X quick review and facts

Use Cases and Deployment Scope

We wish a unified security approach on our endpoints supporting threat hunting and XDR across them.

Pros

  • Granular control over processes and application
  • Granular control over hardware devices
  • XDR
  • Anti exploit and anti ransomware

Cons

  • Sophos modularity requires separate confgurations across tools
  • The platform requires navigating across multiple interfaces
  • Sometines, third party tools are required for full protecions which leads to cost growth

Return on Investment

  • Provides robust cybersecurity protection
  • Reduces riks
  • Provides overall business secirity

Usability

Other Software Used

Cynet 360

Sophos Intercept X user experience

Use Cases and Deployment Scope

We are using Sophos Intercept X to protect part of our Windows client, Windows servers and mobiles into our organization. Even though it can provide protection against attacks (be them viruses, exploits, trojans, ....) ita can also provide web filtering and control over the use of some perifherals as usb ports for example.

Pros

  • Even if we haven't had iportant securutiy issues, so far, Intercept X has, generally, a reduced footprint and works well against viruses, peripheral control (usb, external disks) and application whitelisting.

Cons

  • Web filtering sometimes is a bit too aggressive and even if a reputation cange request can be sent not always the change is done. On the other hand, it's possible to manually whitelist websites or urls.
  • Sometimes, the scanning process, gets a lot of resources. As far as we could see, it's randomly happening.

Return on Investment

  • We actually chose Sophos Intercept X comparing it's price and performances towards some other vendors. We had a2 yrs ROI with regards some other producs we were using.

Usability

Alternatives Considered

Watchguard Endpoint Security

Other Software Used

Cynet 360