We have deployed Sophos Intercept X in our environment, both on desktop as well as server environments. We have set up policies in Sophos. For example, there is a web console that can allow or block websites, and you choose what peripheral control you want your desktop environment to connect to.
We use threat protection and we configure the settings to what we want to enable or disable on a particular device. If a device had a threat on it we can disable the device.
The application control allows us to limit the application that users can install on their devices.














