We upgraded the EDR and so far it's doing good. It patches the things that we weren't able to patch in previous antivirus hardships.
Vice President at a tech services company with 1,001-5,000 employees
Good detection recommendations, good patching and pretty decent protection capabilities
Pros and Cons
- "The patches on offer are very helpful."
- "The solution has very useful response modules where we can get the recommendation on what needs to be done every day around detection."
- "We've had difficulty with uninstalling the solution. When we try to uninstall an old version of the basic Sophos Antivirus, it doesn't seem to uninstall completely."
- "We've had difficulty with uninstalling the solution. When we try to uninstall an old version of the basic Sophos Antivirus, it doesn't seem to uninstall completely."
How has it helped my organization?
What is most valuable?
The solution has very useful response modules where we can get the recommendation on what needs to be done every day around detection.
The patches on offer are very helpful.
It's pretty good at protecting us as an anti-virus.
What needs improvement?
We've had difficulty with uninstalling the solution. When we try to uninstall an old version of the basic Sophos Antivirus, it doesn't seem to uninstall completely. Due to this issue, when we installed Intercept X, we had installation conflicts. The company needs to figure out a way to make installing their old products easier and more complete.
For how long have I used the solution?
We bought this solution in the middle of last year. It hasn't been an extremely long amount of time.
Buyer's Guide
Intercept X Endpoint
May 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.
How was the initial setup?
The only issue we had with Sophos during installation was a problem around removing old versions of Sophos products from machines so that we could properly install Intercept X. There seemed to be some residual aspects of the older version, and that affected our ability to install the newer version. It was quite a headache for us.
Which other solutions did I evaluate?
We've been looking at Symantec and have been looking for information to compare it to Sophos. We're trying to decide which of these we'd use as the standard solution.
What other advice do I have?
We're just a customer and end-user. We don't have a special business relationship with Sophos.
Overall, I would rate the solution at a nine out of ten. We've had a very positive experience so far.
Aside from issues with overwriting old Sophos versions, it's been a pretty solid product.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Founder and General Manager at a tech services company with 11-50 employees
Stable with good pricing and rather simple to use
Pros and Cons
- "The pricing is fair. It's not too costly for our small organization."
- "The stability of the solution is pretty good, we've never had issues with instability and it's reliable without bugs, glitches, crashes, or freezes."
- "It could be a bit easier to implement."
- "It could be a bit easier to implement."
What is our primary use case?
We use the solution and we are also reseller of it. We offer it to our clients as well.
We primarily use the solution for security in order to protect our users and our endpoints.
What is most valuable?
The simplicity of the product is very good. I'm not a very technical person, therefore, the ease of use is very much appreciated.
Integrations are pretty easy to handle. That's very helpful to us.
The pricing is fair. It's not too costly for our small organization.
What needs improvement?
I can't think of any features that are lacking.
The solution needs to ensure it is keeping up with the latest malware defenses and security advancements.
It could be a bit easier to implement.
For how long have I used the solution?
I've been using the solution for a couple of years at this point. It's been a while.
What do I think about the stability of the solution?
The stability of the solution of pretty good. We've never had issues with instability. It's reliable. There aren't bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The solution can scale. If a company needs to expand it out, it can do so with ease.
We are a relatively small organization. Therefore, we don't have too many people using the solution. There are 20 of us, give or take.
How are customer service and technical support?
I've never used technical support. I can't speak to their level of knowledge or how quickly they respond.
How was the initial setup?
The initial setup has a moderate amount of difficulty. It's not too hard or too easy.
I'm not sure how long deployment generally takes, however.
What's my experience with pricing, setup cost, and licensing?
The solution isn't too expensive. We're pretty happy with the pricing.
What other advice do I have?
We are a small company and we don't use enterprise-class solutions. Our customers are mainly mid-size companies. I am a reseller. However, I do use this solution within our organization.
We're using the latest version of the solution. I'm not sure of the exact version number at this time.
I'd recommend the solution to other organizations. We've been happy with it so far.
Overall, I would rate the solution at a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Buyer's Guide
Intercept X Endpoint
May 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.
Senior IT Analyst at a insurance company with 51-200 employees
Good ransomware security with an easy initial setup and good scalability potential
Pros and Cons
- "The initial setup is simple."
- "That's what the Intercept X is designed to do."
- "It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first."
- "It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first."
What is our primary use case?
We primarily use the solution as endpoint protection as well as for endpoint detection and response. It's like an EDR. It's basically used to prevent ransomware.
How has it helped my organization?
I would say that it's difficult to really say how it's improved our organization. We had never actually been hit by a ransomware attack prior to installing Sophos and never had Sophos tell us that we're experiencing one. That said, it's very important to be protected. Getting attacked would be a disaster.
What is most valuable?
We were looking for something that could sense ransomware attempts, to encrypt files, and cut off and reverse attacks as well as alert us to issues. That's what the Intercept X is designed to do. It's very good at security and protection. It offers very good reports.
The initial setup is simple.
The biggest feature that's on the server version that we're using, the EDR, is the ability to push data on threats that it's seeing over to another management platform, like a managed detection response service. It's nice that it's possible to do this and we don't have to pay so much attention to the alerts. They can for us.
What needs improvement?
It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first. Otherwise, it thinks you're a virus. It would be ideal if there was some sort of setting where you could warn the system it's just you in there doing routine maintenance.
For how long have I used the solution?
I've used the solution over the last couple of years. However, I haven't used the product too heavily.
What do I think about the stability of the solution?
The stability is relatively good. We've had a few false alarms, however, there's nothing major that's happened so far. It seems free of bugs and glitches. It doesn't crash or freeze. It's good.
What do I think about the scalability of the solution?
I haven't personally tried to scale anything. It's probably pretty scalable because you don't have an appliance. Appliances have limitations as they have a set size or capacity. It is a cloud-based console, therefore it can probably scale pretty well.
We have 80 people in our organization and everybody uses the product.
How are customer service and technical support?
I'd rate technical support pretty high. I'd give them an eight out of ten. They're helpful. They are knowledgeable and responsive. We've been satisfied with the level of attention we get when we need them.
Which solution did I use previously and why did I switch?
We didn't have anything previously for anti-ransomware. We just had the Kaspersky antivirus. However, it wasn't able to detect ransomware specifically. Therefore, we put Sophos Intercept X on to do that.
How was the initial setup?
We've found the initial setup is pretty straightforward. It's not overly complex. We didn't have trouble setting everything up.
What other advice do I have?
We're using the latest version of the solution.
We've got Sophos Intercept X on the notebook computers along with Kaspersky and then on the servers it's only Sophos EDR, which has both antivirus and Intercept X. All are bundled together.
The console's on the cloud and that's just installed on the clients, however, they all communicate with a self-hosted JIRA cloud console.
I'd advise those considering the solution to probably just go with the antivirus portion as well. That way, you've got it all under one console. We're juggling two consoles, Kaspersky and Sophos. It would be easier if everything was under one.
ON a scale from one to ten, I'd rate this product at a nine. We've been very happy with it.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Country Manager at a tech services company with 1-10 employees
Good usability with helpful technical support and reliable stability
Pros and Cons
- "The solution has very good usability."
- "So far, it's working quite well for us and we've been very happy with it."
- "The initial setup can be difficult if you don't come in with at least some knowledge about the product."
- "The initial setup can be difficult if you don't come in with at least some knowledge about the product."
What is our primary use case?
We primarily use the solution in order to check the correct flow of the workstations.
What is most valuable?
We have the complete solution. We try to see if we have any malware, ransomware, in our workstations, and detect and respond. It's very good at detection.
The solution has very good usability.
So far, it's working quite well for us and we've been very happy with it.
We don't often need support, however, when we do, they've been quite helpful.
If you have good hardware and a good memory, you won't have a problem with this solution's performance at all.
What needs improvement?
The solution is pretty complete and works well for our organization. I can't recall not having any specific feature on hand.
The initial setup can be difficult if you don't come in with at least some knowledge about the product.
The solution can run slower on older computers. When you do a scan, you need to configure the scan to run in the time not when your traffic is high. The performance can be affected if the traffic is high and you are trying to scan. This isn't really the solution's fault. It may be an issue with the robustness of the machine
For how long have I used the solution?
I've been using the solution for around two years now. It hasn't been too long.
What do I think about the stability of the solution?
The stability is very good. We have no complaints in this area. It doesn't crash or freeze. It's not buggy. It's reliable.
What do I think about the scalability of the solution?
Personally, I have not tried to scale the solution, and therefore can't speak to the scalability itself. For our organization and its size, it works well. We have approximately 100 people in the company.
How are customer service and technical support?
We've used technical support in the past. I've found them to be very good. We're quite happy with their level of service, even if we very rarely need to call on them. I'd give them very high marks - maybe 9.5 out of ten for the level of support they provide.
How was the initial setup?
The initial setup can be challenging for those that come in blind with no prior knowledge of the solution. That said, we're pretty knowledgable, so we went in knowing the product and therefore we didn't really have trouble in that sense.
You need to make the deployment, and you need to put the agent in the workstation. That is the most difficult part of the solution. If the company is not centralized, the deployment of the solution is hard. That can be true for any product, actually. However, if you have some solution, for example, to make the deployment of different software for you, you can make the deployment easier. That way, you can centralize the configuration, and set the configuration for the complex platform.
For us, it took two weeks to a month to deploy the solution with the assistance of a software platform. However, that can vary according to the company and its size and environment.
What other advice do I have?
We're partners with Sophos.
I'm not sure which version of the solution I'm using.
When implementing Sophos Intercept, other organizations need to know that the deployment can be a bit difficult. It's a good solution with a challenging implementation. YOu really need to centralize your deployment. If you have a solution that can help ease the deployment process, it's worth it.
Overall, we are very happy with it. I'd rate it at a ten out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Manager at a real estate/law firm with 1,001-5,000 employees
The setup was simple, the EDR could be improved, and perhaps the user interface.
Pros and Cons
- "It's quite simple to use and user friendly."
- "The setup was simple; it took us about one day to set up and configure the software."
- "The EDR could be improved, and perhaps the User Interface."
- "The EDR could be improved, and perhaps the User Interface."
What is our primary use case?
We use it mostly for software protection.
What is most valuable?
It's quite simple to use and user friendly.
What needs improvement?
The EDR could be improved, and perhaps the User Interface. EDR machine learning could be included.
For how long have I used the solution?
We have been using Sophos Intercept X for about two years. It is the latest cloud version. We have about 200 people using it, daily. We are a Sophos customer.
What do I think about the stability of the solution?
It is a stable product.
What do I think about the scalability of the solution?
It is reasonable scalable. So, somewhere in the middle in terms of scalability.
How are customer service and technical support?
We have not needed to use support so far.
Which solution did I use previously and why did I switch?
We have been using Sophos since day one.
How was the initial setup?
The setup was simple. It took us about one day to set up and configure the software.
What about the implementation team?
The setup was done internally. We also perform maintenance internally.
What's my experience with pricing, setup cost, and licensing?
The pricing is average for software like this, but you can purchase additional services if you wish.
Which other solutions did I evaluate?
In the future, we may evaluate SentinelOne.
What other advice do I have?
I would recommend this to other users, and I would give the product 7 out of 10.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Infrastructure Manager at a tech services company with 51-200 employees
Easy to configure, good threat detection capability, and the support is perfect
Pros and Cons
- "This solution is easy to configure."
- "My advice for anybody who is looking into implementing this product is that it is easy to implement, quick to deploy, and has a lot of tools to detect malicious behavior."
- "The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."
- "The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."
What is our primary use case?
This product is primarily used for endpoint security.
What is most valuable?
The most valuable feature is the threat detection capability.
This solution is easy to configure.
What needs improvement?
The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays. It's not sufficient.
I would like to see remote desktop support. For example, if you have a problem with your device, maybe the support team can log in and help to fix the problem using a remote connection.
For how long have I used the solution?
I have been using Sophos Intercept X for the past year and a half, and have just renewed my subscription for another year.
What do I think about the stability of the solution?
Stability-wise, Sophos Intercept X is good. I have not experienced any bugs or problems with it.
What do I think about the scalability of the solution?
The scalability is very good. We have 130 users.
How are customer service and technical support?
I would rate the technical support and ten out of ten. They are perfect.
How was the initial setup?
The initial setup is easy.
What about the implementation team?
I deployed this product myself and the process took about two months.
What other advice do I have?
My advice for anybody who is looking into implementing this product is that it is easy to implement, quick to deploy, and has a lot of tools to detect malicious behavior. I can recommend it to others.
I would rate this solution a ten out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Project Manager at a tech services company with 11-50 employees
Easy to use, straightforward to set up, and it's effective against critical problems including ransomware
Pros and Cons
- "The most valuable features are ease of use and the GUI."
- "My advice for anybody who is considering this product is that if you want ease of use for a good price, and something that addresses most of the endpoint protection needs, then this is the best solution to implement."
- "We would like to deploy across a variety of machines simultaneously through the network."
- "The price of this product should be reduced because it is a little high."
What is our primary use case?
This security solution covers most of the critical problems such as ransomware.
What is most valuable?
The most valuable features are ease of use and the GUI. The interface is very subjective. Personally, I am fine with it. However, some people don't like it. Generally speaking, I would say that it is easy to use.
They have a free version that is installed on mobile phones, which is very good.
The integration with my AP works well.
What needs improvement?
The price of this product should be reduced because it is a little high.
We would like to deploy across a variety of machines simultaneously through the network.
For how long have I used the solution?
We have been using Sophos Intercept X for the past month.
What do I think about the stability of the solution?
So far, I haven't seen any bugs in this product, so the stability is good.
What do I think about the scalability of the solution?
Scalability-wise, Sophos Intercept X is good. We have close to 100 users, who are mostly salespeople.
How are customer service and technical support?
We have not engaged with technical support.
How was the initial setup?
The initial setup is straightforward and not complicated. Deployment-wise, this solution is okay. It is easy to get the agents up.
One problem is that we want to know if there is a way to deploy the agent without going to every machine if I am upgrading from another product. Locally, I have to go machine by machine to complete the installation.
What about the implementation team?
We deployed by ourselves.
What other advice do I have?
My advice for anybody who is considering this product is that if you want ease of use for a good price, and something that addresses most of the endpoint protection needs, then this is the best solution to implement.
Generally, I like this product compared to other endpoint solutions and I don't have many complaints. The vendor just has to keep it up or continue to improve. That said, it cannot stop every virus so it is not perfect.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head-Information Technology at a real estate/law firm with 201-500 employees
Utilizes machine learning functionality and provides good cloud-based administration
Pros and Cons
- "The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability."
- "The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability."
- "I would like to have a built-in firewall, rather than having to integrate one."
- "I would like to have a built-in firewall, rather than having to integrate one."
What is our primary use case?
Our primary use case is endpoint protection.
What is most valuable?
The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability.
What needs improvement?
I would like to have a built-in firewall, rather than having to integrate one. Having both a personal firewall and an endpoint firewall would be an improvement. It does have firewall monitoring capability but it is integrated with the Windows firewall. Having their own endpoint firewall would be better.
For how long have I used the solution?
We have been working with Sophos Intercept X for about two weeks.
What do I think about the stability of the solution?
With respect to stability, given that we have only been using it for a couple of weeks, it is too early to tell. That said, we have not experienced any issues so far.
What do I think about the scalability of the solution?
Scalability has not been a problem.
How are customer service and technical support?
I have not had any issues, yet, that necessitated contacting technical support.
Which solution did I use previously and why did I switch?
Prior to Sophos, we were using a product by Symantec. The first difference is the deep learning or machine learning aspect. The second is the cloud administration capabilities. They both support cloud but the administration is better in Sophos.
How was the initial setup?
The initial setup is straightforward.
What's my experience with pricing, setup cost, and licensing?
I find the pricing to be a little bit expensive, although it is acceptable, for now.
What other advice do I have?
The suitability of this product depends on the company and its environment, but for a company like us, I recommend Sophos.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
Endpoint Protection Platform (EPP) Endpoint Detection and Response (EDR) ZTNA Managed Detection and Response (MDR) Extended Detection and Response (XDR) Ransomware ProtectionPopular Comparisons
Fortinet FortiGate
CrowdStrike Falcon
Microsoft Defender for Endpoint
Cortex XDR by Palo Alto Networks
SentinelOne Singularity Endpoint
Cloudflare One
IBM Security QRadar
Elastic Security
Huntress Managed EDR
HP Wolf Security
Trellix Endpoint Security Platform
WatchGuard Firebox
Microsoft Defender XDR
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos Intercept X or Symantec End-User Endpoint Security - which is the better solution?
- Can Sophos Intercept X and Carbon Black be used side by side on endpoints?
- Which endpoint solution is more effective in terms of protection and remote administration: Sophos Intercept X or Kaspersky Endpoint Security?
- How does Crodwstrike Falcon compare with Sophos Intercept X?
- Sophos Intercept X: renewal cost for a security system integrator
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What's the best way to trial endpoint protection solutions?
- What are the threats associated with using ‘bogus’ cybersecurity tools?















