I'm the technical director and we are partners with Sophos.
Technical Director at a security firm with 1-10 employees
A very good detection rate, good security metrics and AI
Pros and Cons
- "Offers artificial intelligence, security metrics and a lot of information gathered to make decisions."
- "Needs more flexible reporting, particularly for medium to large size companies."
What is our primary use case?
What is most valuable?
This solution is an EDR antivirus with some artificial intelligence, security metrics and a lot of information gathered to make decisions. Without Intercept X, I think Sophos would have lost the antivirus fight and stayed as a UTM vendor. The solution has a very good detection rate. With the new threats, if you don't have Intercept X, you won't be protected from attacks.
What needs improvement?
I think this solution needs more flexible reporting, particularly for medium to large size companies and I'd like to see some varied options for making reports. Communication with all the antivirus vendors could be improved. We need lateral communication with other antivirus and security products. We need to communicate from one site to the other, possibly nothing will be required as a result, but it would be good to have this information and to have it easily transferred.
What other advice do I have?
I rate this solution a nine out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner

Technical manager at Andalusia Hai Aljamea Hospital
Offers very good performance and has great features
Pros and Cons
- "This solution offers very good performance and it has great features."
- "Should include additional integration."
What is our primary use case?
Our primary use case is for securing the endpoints or endpoint users and Sophos servers.
What is most valuable?
This solution offers very good performance and it has great features.
What needs improvement?
I'd like to see more integration in the solution.
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and technical support?
Customer service is good, they're knowledgeable and customer friendly. They provide good support.
How was the initial setup?
We don't install Intercept X in all devices, we do it for ourselves and the customers do their own deployment. It took around two hours for implementation within the company.
What's my experience with pricing, setup cost, and licensing?
There is an annual license fee.
What other advice do I have?
I would recommend this solution and rate it an eight out of 10.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Distributor
Buyer's Guide
Intercept X Endpoint
September 2025

Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
Engineering Manager at a manufacturing company with 51-200 employees
A scalable, stable and easily installable solution offering comprehensive protection
Pros and Cons
- "Sophos Intercept X is a complete endpoint solution."
- "It should offer better security updates."
What is our primary use case?
We use the solution to prevent ransomeware attacks and those from unknown sources.
What is most valuable?
Sophos Intercept X is a complete endpoint solution. It represents the combination of two products in one, offering the same configuration and management.
What needs improvement?
While the solution does not seem to lack any features, it should offer better security updates. It could be more secure, something which holds true for any solution.
Also, the support could be faster.
For how long have I used the solution?
We have been using Sophos Intercept X over the course of the past year. While it is very new in my current company, we made use of it for four years in my previous one.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and technical support?
Technical support could be faster.
Which solution did I use previously and why did I switch?
We used Trend Micro and Symantec in the past.
How was the initial setup?
The solution was installed together with Endpoint, as a single agent, meaning the licensing covers two products. Similar to Endpoint, the installation was very easy.
What's my experience with pricing, setup cost, and licensing?
We have an annual subscription.
What other advice do I have?
We have 300 users making use of the solution.
I would definitely recommend its use to others.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Stable and easy to use, and integrates with their on-premises firewall
Pros and Cons
- "It's a good antivirus software and has a lot of features. It now integrates with their on-premises firewall, which is perfect."
- "The main real-time scanning takes most of the processing power of my notebook."
What is most valuable?
Their support is located in Egypt, so we like this aspect.
It's a good antivirus software and has a lot of features. It now integrates with their on-premises firewall, which is perfect.
It is stable and easy to use as well.
What needs improvement?
The main real-time scanning is taking most of the processing power of my notebook. This is a big problem.
It would be nice if Sophos Intercept X could provide some of their other features for free. For example, when I wanted to add another feature, like zero-day attack, I was told that I would need to add the license.
Also, it would be good to have a lot more resources.
For how long have I used the solution?
I've been using it for about four or five years.
It's a cloud-based solution.
How are customer service and technical support?
The technical support staff are excellent.
Which solution did I use previously and why did I switch?
I used Symantec antivirus, but when they ended the corporate product of Symantec, I was not able to contact them. It was very difficult to reach them and get support or purchase the antivirus, so I switched.
How was the initial setup?
The installation is straightforward.
What about the implementation team?
I deployed it myself with some technical support. They were able to provide what I needed.
What other advice do I have?
If I were to rate Sophos Intercept X on a scale from one to ten, I would rate it at eight. I would recommend this solution.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
eResearch Solution Architect at a educational organization with 1,001-5,000 employees
A good heuristics solution
Pros and Cons
- "I consider the heuristics to be most valuable, the fact that the solution does not work solely on signatures."
- "We are considering switching from this solution as a result of the closer integration needed between the firewall systems and the EDR."
What is most valuable?
I consider the heuristics to be most valuable, the fact that the solution does not work solely on signatures.
What needs improvement?
We are considering switching from this solution as a result of the closer integration needed between the firewall systems and the EDR.
We are not talking about issues with the installation, documentation or interface, but with the existing combination between Sophos Intercept X and our firewalls. This is why we are considering other options.
Moreover, the solution does not offer support for a legacy SAN. However, as this is a legacy issue, it will likely resolve itself eventually.
For how long have I used the solution?
I have been using Sophos Intercept X for close to 15 years.
What do I think about the stability of the solution?
The stability is fine.
How are customer service and technical support?
We have had no problems with technical support.
How was the initial setup?
The installation was fine.
What's my experience with pricing, setup cost, and licensing?
As I am not responsible for paying the bills I cannot comment on the pricing.
What other advice do I have?
I would never rate a solution as a ten out of ten, so I give Sophos Intercept X a rating of eight.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT Security Manager at a financial services firm with 10,001+ employees
Good cost and easy to interact with, but needs threat hunting capabilities and better DLP module
Pros and Cons
- "It is easy to interact with, and its cost is also good."
- "The Data Loss Prevention module can be better. It should also have threat hunting capabilities."
What is most valuable?
It is easy to interact with, and its cost is also good.
What needs improvement?
The Data Loss Prevention module can be better. It should also have threat hunting capabilities.
For how long have I used the solution?
I am really new to it because I just joined a new organization. It has not even been two weeks.
What do I think about the stability of the solution?
Its stability is good so far.
What do I think about the scalability of the solution?
It is scalable.
What's my experience with pricing, setup cost, and licensing?
Its cost is good.
What other advice do I have?
I would recommend it for small and medium enterprises. I would rate Sophos Intercept X a six out of 10.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Administrator
Good app control and threat protection
Pros and Cons
- "We find the app control and its threat protection to be the best features."
- "The choices offered for the on-premises and cloud-based platforms are the reverse of each other."
What is most valuable?
We find the app control and its threat protection to be the best features.
What needs improvement?
The app control in respect of the user interface could be improved, The choices offered for the on-premises and cloud-based platforms are the reverse of each other, such as the one responsible for allowing or denying access. This can be confusing initially, even though I later discovered that it is possible to set it back.
What do I think about the stability of the solution?
We are happy with the solution's stability.
What do I think about the scalability of the solution?
The solution is scalable. We continue to add devices to the several sites we have on it without any problem.
How are customer service and technical support?
I haven't had much cause to deal with technical support, although we sometimes require this concerning the email component, particularly in respect of the relay to Office 365.
Which solution did I use previously and why did I switch?
In our ten years we have not worked with another solution before using Sophos Intercept X.
How was the initial setup?
The initial setup was easy.
What's my experience with pricing, setup cost, and licensing?
While I do not have much experience dealing with the price, we have been entitled to a substantial discount on the solution in our use of it as an educational tool.
What other advice do I have?
Our organization has 1,500 end-users making use of the solution.
We require four to five administrators.
The solution sufficiently satisfies one's standard needs, including those of antivirus and app control.
I rate Sophos Intercept X as an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Technical Manager at Digital World
Comparable pricing, stable and scalable, easy to install
Pros and Cons
- "This solution can be used with any device, mobiles, desktops, or any appliances."
- "When I use a proxy, I can bypass Sophos, which is an area that needs improvement."
What is most valuable?
This solution can be used with any device including mobiles, desktops, or any appliances.
What needs improvement?
When I use a proxy, I can bypass Sophos, which is an area that needs improvement.
For how long have I used the solution?
We have been providing this solution for one year.
What do I think about the stability of the solution?
It's a stable product.
What do I think about the scalability of the solution?
It's scalable. We have 50 customers.
How are customer service and technical support?
Technical support should be faster.
How was the initial setup?
The initial setup is straightforward. The installation is easy, and it's faster than SAP.
Sophos Intercept can be deployed in a couple of minutes.
It will take one hour to deploy it for a firewall, and only 15 minutes for the endpoint protection.
We need one engineer to deploy this solution.
What's my experience with pricing, setup cost, and licensing?
The price is okay. It's comparable with other solutions.
You can purchase a license for one to three years.
What other advice do I have?
I would recommend this solution.
I have no issues with this solution, I would rate it a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner

Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2025
Product Categories
Endpoint Protection Platform (EPP) Endpoint Detection and Response (EDR) ZTNA Managed Detection and Response (MDR) Extended Detection and Response (XDR) Ransomware ProtectionPopular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
Fortinet FortiEDR
SentinelOne Singularity Complete
IBM Security QRadar
Microsoft Defender XDR
HP Wolf Security
Cortex XDR by Palo Alto Networks
Fortinet FortiClient
Elastic Security
WatchGuard Firebox
Trellix Endpoint Security Platform
Symantec Endpoint Security
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos Intercept X or Symantec End-User Endpoint Security - which is the better solution?
- Can Sophos Intercept X and Carbon Black be used side by side on endpoints?
- Which endpoint solution is more effective in terms of protection and remote administration: Sophos Intercept X or Kaspersky Endpoint Security?
- How does Crodwstrike Falcon compare with Sophos Intercept X?
- Sophos Intercept X: renewal cost for a security system integrator
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What's the best way to trial endpoint protection solutions?
- What are the threats associated with using ‘bogus’ cybersecurity tools?