

Sophos Endpoint and VMware Carbon Black Endpoint are prominent contenders in the endpoint security category. VMware Carbon Black seems to hold a slight edge due to its advanced threat detection and threat hunting capabilities.
Features: Sophos Endpoint excels with virus definitions, ransomware detection, and central management. It includes data loss prevention, synchronized security, and ease of deployment. VMware Carbon Black Endpoint stands out with real-time threat hunting, behavior analysis, and deep visibility into incidents. It facilitates detailed investigations and integrates well with existing systems, making it ideal for advanced threat management.
Room for Improvement: Sophos Endpoint users report concerns about resource consumption, pricing, and configuration complexity. Improvements in notification systems, logging, and support services are requested. For VMware Carbon Black Endpoint, users suggest enhancements for the user interface, reducing false positives, and speeding up technical support. The solution's lack of mobile and cloud-specific features is also noted.
Ease of Deployment and Customer Service: Sophos Endpoint supports cloud and on-premises environments, although technical support response times are seen as inconsistent. VMware Carbon Black Endpoint offers flexible deployment across cloud, on-premises, and hybrid setups, but deployment can be complex for newcomers, and support responsiveness could improve.
Pricing and ROI: Sophos Endpoint's pricing is viewed as reasonable and cost-effective, especially with extended license discounts. VMware Carbon Black Endpoint is considered expensive, though justified by its advanced features. Both products provide ROI through enhanced productivity and security, with VMware's higher cost as a key consideration.
I would give customer support a rating of 10 out of 10 because they resolve my problems as soon as possible, and I receive very good, quick support from Sophos.
I rate Sophos support as excellent, giving it a ten out of ten.
They have introduced a dedicated role called Technical Account Manager (TAM) for every partner.
Regarding the technical support of Broadcom, they are responsive and helpful.
If we are using 300 machines and suddenly 10 more people are joining our organization, I will just raise a ticket on Sophos Endpoint and they will increase my 10 endpoint licenses.
Sophos Endpoint is stable in my experience for the past two years.
Sophos Endpoint should include the Linux endpoint agent and should provide a solution for Linux endpoints as well, because the server license is costly and nobody wants to use the server license on an endpoint machine.
I think there should be templates in place so I do not have to make everything from scratch; having templates for NATing, de-NATing, and LAN to WAN rules would save us time.
Users have noted that daily upload limits per device, overall data lake storage capacity tied to licenses, and daily API query limits can be restrictive.
It is quite affordable; I think the pricing and licensing are reasonable.
The cost is reasonable and cheaper than other alternatives.
The pricing is slightly increased, but it is good because Sophos Endpoint has a lot of features.
Web filtering helps provide protection by allowing me to block unwanted and unauthorized websites from Sophos EPP Suite, which helps prevent unauthorized intrusion, thus keeping our organization servers secure.
Key features for comprehensive detection and prevention include advanced threat prevention, ransomware protections, exploit prevention, and AI-powered detections.
Sophos Endpoint has the feature of live response. If any malware has been detected or a potentially unwanted application has been detected on any system, I can easily take remote control from the CLI and delete that file from the endpoints.
I assess VMware Carbon Black Endpoint's machine learning capabilities in detecting unknown threats as fantastic.
| Product | Market Share (%) |
|---|---|
| Sophos Endpoint | 1.2% |
| VMware Carbon Black Endpoint | 1.8% |
| Other | 97.0% |

| Company Size | Count |
|---|---|
| Small Business | 45 |
| Midsize Enterprise | 7 |
| Large Enterprise | 14 |
| Company Size | Count |
|---|---|
| Small Business | 31 |
| Midsize Enterprise | 9 |
| Large Enterprise | 31 |
Sophos Endpoint offers centralized management, AI-powered detection, and comprehensive threat prevention. It is designed for antivirus, ransomware defense, and threat management across sectors like education, healthcare, and finance. Its benefits include synchronized security, simple deployment, and a user-friendly interface.
Sophos Endpoint provides multiple functionalities to protect networks, devices, and applications. It emphasizes advanced threat prevention and AI-powered detections, enhancing protection against malware and ransomware. Combining web filtering, machine learning, and data loss prevention ensures a secure environment, while integration with other Sophos tools allows for streamlined security management. Sophos Endpoint addresses the need for efficient protection with lightweight operations, synchronized security between endpoints and firewalls, and notable ease of deployment. Resource management is a key focus, alongside improving antivirus detection and systems integration. Price competitiveness and expanded support for macOS are also priorities.
What are some key features of Sophos Endpoint?In the education, healthcare, and finance sectors, Sophos Endpoint is utilized to ensure secure IT infrastructure. It supports initiatives in digital safety and compliance with integration capabilities for web filtering, firewall, and VPN security. Organizations benefit from mobile device management and disk encryption to safeguard sensitive information effectively.
VMware Carbon Black Endpoint enhances endpoint security with its robust EDR, threat detection, and live response features. The cloud-based architecture supports remote management and easy setup while behavioral monitoring and dynamic grouping minimize security risks.
VMware Carbon Black Endpoint is designed for those seeking comprehensive endpoint protection. With its cloud-based deployment, organizations experience streamlined remote control and simplified rollout processes. Its behavioral monitoring, incident response capabilities, and firewall integration deliver advanced security measures. Although it addresses many security challenges, areas like manual alert management, on-demand scanning, and integration with systems like AlienVault USM require refinement. Improved UI, EDR components, and flexible pricing models would enhance user satisfaction. On-premise deployment infrastructure and compatibility issues with some operating systems need attention. Enhanced reporting, container security, and multi-tenancy support are also essential for fulfilling industry needs. AI-driven analysis and threat isolation empower companies by fostering proactive management.
What are the key features of VMware Carbon Black Endpoint?
What benefits should users look for when evaluating VMware Carbon Black Endpoint?
VMware Carbon Black Endpoint finds extensive application in industries focused on stringent security requirements. Managed security service providers leverage its capabilities to deliver comprehensive protection to multiple clients worldwide. Organizations use it primarily for antivirus protection and incident management, integrating it with their existing security frameworks to strengthen endpoint visibility and real-time threat prevention. Its advanced detection and application control features make it a preferred choice in industries that prioritize robust security measures. However, it requires improvements in terms of system compatibility and customization flexibility to better serve diverse industry environments.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.