Try our new research platform with insights from 80,000+ expert users

KnowBe4 vs Sophos Phish Threat comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.9
KnowBe4 provides cost-effective security training, enhances cybersecurity awareness, reduces incidents, and mitigates risks, increasing organizational security culture.
Sentiment score
5.7
Sophos Phish Threat provides ROI by educating users, reducing ransomware incidents, and enhancing organizational security through training.
We learned extensively about cybersecurity with the training, and the automated trainings are very convenient and feasible for us.
This soft ROI shows value within the company and how security and data are being protected.
The solution proved valuable for audit reporting and successfully raised awareness while reducing phishing click rates.
 

Customer Service

Sentiment score
5.7
KnowBe4 is praised for responsive, effective customer service, fast technical support, and timely feedback with minimal interactions needed.
Sentiment score
6.7
Sophos offers excellent customer support, praised for responsive, expert service and enhanced by Cyberoam staff integration, often resolving issues efficiently.
Their support is very quick and informative.
We have escalated questions to KnowBe4's technical support, and it has been quite helpful in guiding us, especially when we request feature edits or face buggy issues.
The content is regularly updated to reflect current threats.
 

Scalability Issues

Sentiment score
6.0
KnowBe4 supports scalable growth and compliance with automation, aiding diverse industries in reducing phishing risks despite synchronization challenges.
Sentiment score
6.6
Sophos Phish Threat is highly scalable, offering seamless user additions and effective performance across various organization sizes with cloud support.
I would evaluate the scalability of KnowBe4 as quite scalable, giving it an 8.5 on a scale of one to ten.
The product is pretty much scalable.
 

Stability Issues

Sentiment score
6.4
KnowBe4 is considered stable and reliable, with minimal downtime and praised for its performance and dependable support.
Sentiment score
7.3
Sophos Phish Threat is stable, reliable, with minimal issues reported, but some users suggest potential for improvement.
KnowBe4 works without interruptions and is very stable.
In terms of stability, KnowBe4 is stable; based on the training we are receiving, I would rate it at nine out of ten.
During the last downtime, it caused significant disruption as users couldn't access the system.
 

Room For Improvement

KnowBe4 can boost engagement by adding interactive, personalized content, localization, and more effective, stable, diverse training options.
Sophos Phish Threat needs improvements in pricing, security, user interface, training, integrations, current simulations, and language options.
KnowBe4 could educate people about OWASP Top 10 in web security testing and API security.
KnowBe4 should focus more on these issues and provide guidance on dealing with links received from individuals who attempt to manipulate our emotions, particularly on social media platforms such as Facebook and LinkedIn.
The more complicated things they do about phishing, AI, and social engineering are very important, and the way they do it is very structured and good.
 

Setup Cost

KnowBe4's pricing is reasonable, varying by user count and location, but may seem costly, especially in government sectors.
Sophos Phish Threat's tiered pricing is competitive, with annual subscriptions preferred, covering user numbers and firewall integration.
It's about five dollars a seat per month.
The solution was considered expensive, particularly in government contexts.
As an exceptional product, they are relatively expensive, but it is worth it because compared to offline education with hired dedicated people, it would be much more expensive and not obviously more efficient.
The cost of Sophos Phish Threat is very reasonable for customers as they charge based on usage only.
 

Valuable Features

KnowBe4 provides automated phishing simulations, engaging training, AI-enhanced checks, and scalable, customizable security solutions with multilingual support.
Sophos Phish Threat excels with ease of use, effective training, scalable deployment, detailed reports, and strong technical support.
Modern phishing emails appear authentic, as if from friends. This enables full-blown ATP operations using AI to generate convincing phishing emails, making it crucial to focus on AI-based detection against AI-generated threats.
This is the biggest benefit to raise caution in the digital world, making people aware of the importance of verifying the sources of information.
I appreciate the training methodology. It is detailed with videos and real examples about handling phishing emails and dealing with social media links received through WhatsApp, email, or other platforms.
 

Categories and Ranking

KnowBe4
Ranking in Security Awareness Training
1st
Average Rating
8.6
Reviews Sentiment
5.8
Number of Reviews
18
Ranking in other categories
No ranking in other categories
Sophos Phish Threat
Ranking in Security Awareness Training
3rd
Average Rating
8.8
Reviews Sentiment
6.6
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Security Awareness Training category, the mindshare of KnowBe4 is 26.8%, down from 33.9% compared to the previous year. The mindshare of Sophos Phish Threat is 3.9%, down from 5.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Awareness Training
 

Featured Reviews

Amran Hossain - PeerSpot reviewer
Training program enables comprehensive security awareness and cautious email practices
One feature that would be highly beneficial in a future release is the ability to automatically send training articles or security tips to users on a regular, scheduled basis—for example, weekly or monthly. While the current training modules and phishing simulations are highly effective, ongoing awareness is equally important to keep security top of mind in day-to-day operations. These short, digestible articles or micro-learning content could cover recent phishing trends, real-world examples of security breaches, or quick tips on secure online behavior. Periodic delivery would serve as a continuous learning touchpoint, reinforcing key concepts from the main training and adapting to evolving threats. Ideally, this feature would also include personalization, allowing content to be tailored based on a user’s role, previous training performance, or common mistakes observed in phishing simulations. This kind of proactive, lightweight training approach could significantly enhance employee engagement with security practices and help maintain a strong security posture over time.
Shaun Gordon - PeerSpot reviewer
Identifies vulnerable employees through customized simulations
Sophos Phish Threat effectively identifies susceptible employees. It depends on knowing my staff. For example, if I receive an email claiming my Facebook account is compromised, I immediately recognize it as suspicious, as I don't have Facebook. If I know my staff use LinkedIn, I utilize the LinkedIn simulation. Similarly, if they bank with Absa, I use the Absa simulation. There isn't a single 'one size fits all' approach. Sophos Phish Threat ensures users do not click on dodgy emails or dodgy links within an environment.
report
Use our free recommendation engine to learn which Security Awareness Training solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Construction Company
9%
Financial Services Firm
9%
Manufacturing Company
6%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about KnowBe4?
Their customizable nature allows us to create scenarios that closely resemble real-world phishing attempts, making them highly relatable to our end users.
What is your experience regarding pricing and costs for KnowBe4?
I would not know about the pricing because it has been subsidized for us, so I am not fully aware of the actual cost.
What needs improvement with KnowBe4?
I have a challenge with the stability while using KnowBe4. I have made an observation regarding the login process. For every login attempt, because my organization uses KnowBe4 with a large staff s...
What do you like most about Sophos Phish Threat?
I find the solution's reports very valuable.
What needs improvement with Sophos Phish Threat?
To make Sophos Phish Threat better, the user interface should be improved. They can enhance the preview of the campaigns and the templates of the phishing simulation. I see some difficulty there. T...
What is your primary use case for Sophos Phish Threat?
The main use case for Sophos Phish Threat is security awareness training for users and employees in their offices to gain knowledge of cybersecurity hygiene, including how to use emails and how to ...
 

Also Known As

No data available
Phish Threat
 

Overview

 

Sample Customers

West Aurora Public School District 129
Information Not Available
Find out what your peers are saying about KnowBe4 vs. Sophos Phish Threat and other solutions. Updated: July 2025.
865,384 professionals have used our research since 2012.