No more typing reviews! Try our Samantha, our new voice AI agent.
Khandokar Rabbi - PeerSpot reviewer
Head of IT Department (Sr. Manager) at a retailer with 10,001+ employees
Real User
Mar 27, 2024
Used for endpoint security, ransomware protection, virus protection, and server security
Pros and Cons
  • "The most effective features of Intercept X Endpoint for threat prevention are ransomware protection, miscellaneous behavior detection, and network threat protection."
  • "Intercept X Endpoint is a very heavy solution that consumes a lot of RAM and should be made lighter."

What is our primary use case?

We mainly use Intercept X Endpoint for endpoint security, ransomware, virus protection, and server security.

What is most valuable?

The most effective features of Intercept X Endpoint for threat prevention are ransomware protection, miscellaneous behavior detection, and network threat protection. We are also using Sophos' next-generation firewall. That device and endpoint security are syncing each other with our users.

The endpoint security and firewall know and understand each other, and they understand what kind of package is coming and what kind of package is going through. Hence, the solution's protection is fabulous.

What needs improvement?

Since Intercept X Endpoint is a process-consuming solution, the older machines or computers cannot handle it. Intercept X Endpoint is a very heavy solution that consumes a lot of RAM and should be made lighter.

For how long have I used the solution?

I have been using Intercept X Endpoint for three years.

Buyer's Guide
Intercept X Endpoint
May 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.

What do I think about the stability of the solution?

There are no glitches because the client automatically receives all the updates. The protection process is slowed down in case of a network issue. It takes more RAM and a processor to check all the files. There are no issues if there is internet and connectivity with the network.

I rate the solution a six or seven out of ten for stability.

What do I think about the scalability of the solution?

More than 3,000 users are using the solution in our organization.

I rate the solution an eight out of ten for scalability.

How was the initial setup?

The initial setup of the solution is very easy.

What's my experience with pricing, setup cost, and licensing?

The solution’s pricing is high.

What other advice do I have?

Intercept X Endpoint is deployed on the cloud in our organization. Previously, we had two ransomware attacks when we were using Kaspersky as an endpoint security. We didn't face any ransomware attacks after using Intercept X Endpoint for endpoint security.

Intercept X Endpoint has simplified our malware detection. Since we have already implemented the policies in the cloud, all the malware is automatically detected. The solution also detects and removes new malware that can also come from the cloud AI engine.

Integrating Intercept X Endpoint with our current security infrastructure was very easy. In my opinion, Sophos is a better solution because we are using Sophos endpoint security and network security. These two things sync with each other and monitor the packets and network traffic. No other vendor has simultaneous devices to check everything. I would recommend the solution to other users.

Overall, I rate the solution an eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Saad Qaiser - PeerSpot reviewer
Manager (Network Design) at Comstar - Information Systems Associates Ltd.
Real User
Mar 26, 2024
Provides web protection and filtering and application and peripheral control
Pros and Cons
  • "The Managed Detection and Response service provided by Intercept X Endpoint is highly valuable. With a team of 600-700 individuals monitoring systems, they swiftly respond to attacks, either informing us to isolate or directly removing threats. This full MDR service is especially recommended for sectors like finance, where data security is critical. The deep learning technology within Intercept X Endpoint enhances our security posture by analyzing behaviors and algorithms to differentiate between legitimate users and threats, effectively preventing attacks on our network infrastructure."
  • "I recommend that Intercept X Endpoint should include a patch assessment feature. Various vendors offer virtual patching solutions, which could be a game-changer, especially for the financial sector where frequent service restarts are challenging. These solutions allow patching servers without the need for restarts. Incorporating these features into Intercept X Endpoint would enhance its effectiveness in securing endpoints and servers."

What is our primary use case?

We've been selling Intercept X Endpoint for eight years now. It's best suited for customers already using Sophos Firewall or considering one. Deploying both solutions offers synchronized security, where the firewall and endpoint communicate to enhance security posture. If an endpoint is attacked, it sends a signal to the firewall to isolate it until it's clean. This setup is especially helpful for users lacking security expertise. We've deployed this successfully for over fifty customers, and it's proven to be a great product.

How has it helped my organization?

I highly recommend Intercept X Endpoint for real-world incident response scenarios. It's a top-performing product recognized by industry leaders like Gartner and Forrester. Sophos has a strong global presence and market share and offers Managed Detection and Response services for customers who lack the budget or infrastructure to implement it themselves including a 24/7 operations team to help prevent incidents effectively.

What is most valuable?

The Managed Detection and Response service provided by Intercept X Endpoint is highly valuable. With a team of 600-700 individuals monitoring systems, they swiftly respond to attacks, either informing us to isolate or directly removing threats. This full MDR service is especially recommended for sectors like finance, where data security is critical. The deep learning technology within Intercept X Endpoint enhances our security posture by analyzing behaviors and algorithms to differentiate between legitimate users and threats, effectively preventing attacks on our network infrastructure.

What needs improvement?

I recommend that Intercept X Endpoint should include a patch assessment feature. Various vendors offer virtual patching solutions, which could be a game-changer, especially for the financial sector where frequent service restarts are challenging. These solutions allow patching servers without the need for restarts. Incorporating these features into Intercept X Endpoint would enhance its effectiveness in securing endpoints and servers.

For how long have I used the solution?

We haev been working with Intercept X Endpoint since 2016. 

What do I think about the stability of the solution?

Intercept X Endpoint is a highly stable product.

What do I think about the scalability of the solution?

It's scalable to meet varying needs. We've deployed it for over fifty customers.

In terms of scalability, I would rate it 9 out of 10.

How are customer service and support?

The technical support provided by Intercept X Endpoint is excellent. They offer prompt assistance whenever needed. 

How was the initial setup?

Implementing Intercept X Endpoint is straightforward and doesn't require advanced technical knowledge. In terms of ease of deployment and management, I would rate it 9 out of 10, as it's very convenient and straightforward to deploy.Deployment can be done easily through the cloud console by downloading and installing the agent. 

What was our ROI?

Intercept X Endpoint has had a positive impact on our system.

What's my experience with pricing, setup cost, and licensing?

Customers need to pay for a license for Intercept X Endpoint based on the number of users and servers they have. The pricing is considered normal and not overly expensive.

What other advice do I have?

I rate Intercept X Endpoint a 9 out of 10. My advice for those starting to use it is to evaluate the product thoroughly; it offers great value for its price and features. As for additional features, I would like to see improved patch management and virtual patching capabilities in future releases.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Intercept X Endpoint
May 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.
IT Support Engineer at Tibbetts Group
Real User
Top 5
Jan 22, 2024
Incorporates advanced features like deep learning analysis, anti-ransomware, and fileless attack protection
Pros and Cons
  • "Everything in Intercept X Endpoints is much centralised which makes it easy for our team to work with. The functions are in a single portal."
  • "In my opinion, there have been significant developments in the product. In my opinion, I don’t have any suggestions as of now, however I can suggest a cost deduction which will be beneficial for all the parties. It will also relieve our budget and benefit our team."

What is our primary use case?

We use Intercept X Endpoint across various devices such as PCs, laptops, servers, and mobiles in our engineering enterprise.

What is most valuable?

Everything in Intercept X Endpoints is much centralised which makes it easy for our team to work with. The functions are in a single portal. 

What needs improvement?

In my opinion, there have been significant developments in the product. In my opinion, I don’t have any suggestions as of now, however, I can suggest a cost deduction which will be beneficial for all the parties. It will also relieve our budget and benefit our team.

For how long have I used the solution?

I've been using Intercept X Endpoint for six years now.

What do I think about the stability of the solution?

It is stable and I will rate it 10 out of 10, since we have no issues any far. 

What do I think about the scalability of the solution?

I would rate the scalability 10 out of 10, and you can easily add licenses whenever you want. The scalability is immediate and currently, we employ almost 130 users. Based on the usage, we also have plans to increase the usage in the future.

How are customer service and support?

There haven’t been many calls that were regarding concerns with Sophos. We are satisfied with the service. Also, we have a monthly review coming up and looking forward to it.

I haven’t personally interacted with Sophos and haven’t raised a support call. However, in a particular instance, Sophos reached out to us regarding an issue. While we were dealing with the issue, I found the response time to be slow.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We have only engaged with one solution for endpoints and that is Intercept X Endpoint.

How was the initial setup?

The installation process is quite straightforward and easy. The process takes almost few minutes and requires not more than one person. In case the deployment is for everyone, one person might not suffice the task. 

What about the implementation team?

It requires only one person to deploy and it was done in-house in our case.

What's my experience with pricing, setup cost, and licensing?

I would rate the price 7 out of 10, where 1 is most expensive and 10 is cheapest. Also, a little reduction in price can be a great move for Intercept X Endpoint.

What other advice do I have?

Intercept X Endpoint is a great solution for larger teams and has a great support system. I would totally recommend it and rate it 10 out of 10.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Shaik Fareed - PeerSpot reviewer
Senior Network Engineer at Eyegear
Real User
Top 5
Sep 15, 2025
A solution for firewall protection with diagnosis and remote access
Pros and Cons
  • "One of the best features of Sophos Intercept is that it repairs without slowing down the system."
  • "If Sophos Intercept allows users to restrict website access based on specific needs, such as streaming new videos for business purposes, we would prefer to use that."

What is our primary use case?

After adding layers of firewall protection, our network runs smoothly, effectively combating viruses and malware. Whenever issues arise, we can promptly diagnose them using the error logs provided. Additionally, Sophos Intercept offers Sophos Central, allowing us to access our firewall from anywhere. This accessibility enables us to provide support to our team remotely. The firewall's GUI is user-friendly and intuitive, making issue identification and resolution straightforward. Using Sophos Intercept, we can pinpoint and address network issues, such as blocked websites.

How has it helped my organization?

If a client system is attempting to download anything or if any other system file is trying to access it, an alert is triggered by Intercept and the firewall. Automatically, it is connected to Sophos Central daily. I can trace the issue from Sophos Central, and the Endpoint will provide all the necessary information. Endpoint security ensures that client systems, including servers, are protected. One of the best features of Sophos Intercept is that it repairs without slowing down the system.

What is most valuable?

The main feature of Sophos Intercept is the ability to block certain websites that we don't want users to access. A user can only uninstall Sophos Intercept if they contact the administrator. This is a very useful security measure. Sophos Intercept Endpoint is strong in resolving issues.

What needs improvement?

We received an alert from a client where we have installed Sophos Endpoint Security. There is a vulnerability in some applications, compromising their integrity. They have used a crack version, which is not genuine. These cracks contain malware and tokens. Someone attempted to copy a file into the system. Fortunately, with the help of Sophos Intercept, we received an alert promptly. We immediately halted our work on the infrastructure. Sophos Endpoint Security can scan files instantly and provide alerts.

If Sophos Intercept allows users to restrict website access based on specific needs, such as streaming new videos for business purposes, we would prefer to use that. They have categorized details in the web policy in the Endpoint security setup. For example, I had to use the MCU tool under the 'Entertainment' option. I had to choose whether to allow it. If I block this category, all video-related applications, including Skype, will cease functioning. Therefore, they need to provide separate options. For instance, if they include 'Streaming' as an option under web policies for entertainment, users can differentiate and choose to block streaming websites individually, such as Daily Motion. This would give users more control over their access.

For how long have I used the solution?

I have been using Intercept X Endpoint for five years.

What do I think about the stability of the solution?

The product is stable.

What do I think about the scalability of the solution?

The solution is scalable. 50 users are using this solution.

Sophos also launched DNS protection. We can use DNS protection if a client has no more than ten users. With DNS protection, we can monitor and block sites that are not business-related, allowing us to monitor and control the traffic of every user in the branch. DNS protection offers the option to log and control the traffic of your branch effectively.

How are customer service and support?

Customer support will contact you after two days after you open a ticket.

How would you rate customer service and support?

Negative

Which solution did I use previously and why did I switch?

No Built-in Email Security: Intercept X does not include email protection (phishing, spam, or attachment scanning). A separate solution like Sophos Email or third-party service is needed. More expensive than basic antivirus solutions.

My advice: They must include email security features.

How was the initial setup?

The initial setup is straightforward. They have divided it into three categories: MacOS, Windows, and server. So, if you are installing it on Windows 10, you must download the Windows installer and select the Windows installer option. In Sophos Central, they have separated the installation files. The server-required files are separate, the client system files for Windows are separate, and there are separate files for MacOS. 

What other advice do I have?

Sophos can block the ransomware. It is very easy to understand. A new user using that firewall can easily understand and handle it.

Overall, I rate the solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Sep 15, 2025
Flag as inappropriate
PeerSpot user
Mohamad Charara - PeerSpot reviewer
Head of IT at a consultancy with 201-500 employees
Real User
Top 5
Apr 25, 2025
security solution for network and endpoint protection

What is our primary use case?

We use the solution for protecting our network and endpoints using the same vendors. This integrated approach provides a robust fit, enabling better 360-degree protection than having standalone systems.

How has it helped my organization?

Intercept X Endpoint is a good balance between features, cost, and value. Sophos did well during all the previous years in protecting our environment.

What is most valuable?

There are two approaches in antivirus, i.e., device intelligence and cloud intelligence. The beauty of Sophos is that it will not take the load from the computers. All the monitoring or detections happened through a cloud engine. It is a very light antivirus on my computer.

It has a minimum impact in comparison to Kaspersky or Defender. I've been a customer of the Defender since 2004 or 2005, but Sophos is lighter than even the Defender.

Kaspersky is very heavy. Norton has reached a very low detection rate. The Defender has more options than Sophos on a personal level, but on the enterprise level, it is a much higher level than Defender on the XDR side.

Configuration is straightforward on the endpoint. It wasn't getting updated properly. The firewall is good, but the interface can be slightly better.

What needs improvement?

The solution is expensive. In the end, everyone would look to have better pricing for the product.

For how long have I used the solution?

I have been using Sophos Intercept since 2016 or 2017.

What do I think about the stability of the solution?

The product is stable.

What do I think about the scalability of the solution?

The solution's scalability is not so good. Antivirus has no scalability. Since it's a cloud solution, you have to purchase a license. The scalability is on Sophos' side.

400 users are using this solution.

How are customer service and support?

We used to contact customer support since we were paying for AMC.

The VPN client isn't compatible with Mac, although the environment doesn't heavily rely on Mac devices.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup wasn’t that complicated. The interface wasn’t user-friendly compared to other brands. I had to establish the network from scratch, set up the environment, configure the devices, join the domain for group policy, and install the necessary software. That was the approach I followed during the implementation.

The deployment took 20 days for nearly 300 computers.

What's my experience with pricing, setup cost, and licensing?

The solution costs around $40-42 per license.

What other advice do I have?

The solution's maintenance is very straightforward unless we are forcing updates. I'm using it on my Mac. We feel nothing about Sophos because it is running in the background and protecting.

The solution is value for money because it holds a value. I have not experienced any virus attacks in the last six or seven years. If it gets the virus, then it will be isolated, etc. Overall, I didn't face any issues.

I recommend the solution with a basic subscription and security.

Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
SHUBHAM BHINGARDE - PeerSpot reviewer
Project Engineer at CDAC
Real User
Top 5Leaderboard
Feb 28, 2024
Helpful to detect and identify worms and malware
Pros and Cons
  • "It is a stable solution. Stability-wise, I rate the solution a ten out of ten."
  • "The performance offered by the product needs improvement."

What is our primary use case?

My company uses Active Directory to manage users and track whether they have installed any third-party applications or any malicious applications that need to be blocked before allowing for the installation of the application. My company informs users whether the tools they use have any malicious activities or products.

What is most valuable?

In terms of protection, Intercept X Endpoint is very good as it detects and identifies issues at a very early stage, so it is up to date. In terms of usability, it consumes a lot of RAM space, which causes work machines in our company's environment to be very slow. In my company, we have to wait and allow for the tool to complete the scanning of all the files and other aspects, or else the machines get slow.

What needs improvement?

The machines get too heavy because of the background applications that run when the tool is used. The performance offered by the product needs improvement.

For how long have I used the solution?

I have been using Intercept X Endpoint for more than two years.

What do I think about the stability of the solution?

It is a stable solution. Stability-wise, I rate the solution a ten out of ten.

What do I think about the scalability of the solution?

In terms of scalability, you have to pay for every user that uses the product. If you pay more, you can get more users to use the product.

Around 500 people in my company use the product.

The product is extensively used in my company, and we plan to increase the number of uses of the solution. As the number of users of the solution in our company increases, we have to implement the product in every employee machine in our organization. My company uses the product on Windows and Linux.

Which solution did I use previously and why did I switch?

I have no idea about the other products in the market since I directly started to use Intercept X Endpoint.

How was the initial setup?

The solution is deployed on an on-premises model.

What about the implementation team?

A representative or set of executives from Sophos' team is involved in the product's installation process and guides the use cases of the application.

What was our ROI?

The return on investment from the use of the solution is very good since it helps my company to keep our network secure and protected.

What's my experience with pricing, setup cost, and licensing?

On a per-user basis, my company has to pay a certain amount of money.

What other advice do I have?

The solution improves our company's endpoint protection strategy as it helps to protect our network from getting affected by any worm or malware.

It is a very good tool to use for stopping threats. The tool is also useful to manage the activities of users in our company.

The tool is very good to use and is always up to date. The product can identify malware and worms at an early stage. Additionally, the tool also helps identify crypto miners.

Our company's system performance was getting slow because of the product.

I rate the overall tool an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Business Development Manager at Ampler Technologies
Real User
Oct 26, 2023
A scalable and easy-to-deploy product that provides user-friendly dashboards and very good support
Pros and Cons
  • "The product is user-friendly."
  • "The product’s DDoS and AI features must be improved."

What is our primary use case?

The solution is used to protect organizations from malware and phishing emails.

What is most valuable?

The solution is very useful. The product protects an organization from known and unknown threats. A dedicated team monitors the solution 24/7 to protect it from unknown threats. It is very good for protection from cyber threats. The product is user-friendly.

What needs improvement?

The product’s DDoS and AI features must be improved.

For how long have I used the solution?

I have been using the solution for around six to nine months.

What do I think about the stability of the solution?

We haven’t faced any issues with the tool’s stability.

What do I think about the scalability of the solution?

The tool is scalable.

How are customer service and support?

The technical support is very good.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have also used Cisco, Palo Alto, and Trend Micro. Intercept X provides prompt service. It has user-friendly dashboards. We are able to meet our client’s expectations well.

How was the initial setup?

The initial setup is very easy. Customers choose the product because it has a user-friendly dashboard. It is not complicated. It is easy to understand. To deploy the tool, we install it in the client’s server and enable the policies they require, like USB filtering, URL filtering, and web control traffic. The customers have their own DLP methods. We enable it as per the requirements. Our service team is involved in the deployment process. It takes 40 to 60 minutes to deploy the tool. It is easy to maintain the product.

What's my experience with pricing, setup cost, and licensing?

The solution’s pricing is good.

What other advice do I have?

I would recommend the product to others. Overall, I rate the solution an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Muhammad-Imran - PeerSpot reviewer
Network administrator at Al Hussan Group
Real User
Aug 13, 2023
Light on computer resources, doesn't consume much memory and works effectively as an antivirus detection solution
Pros and Cons
  • "The most valuable feature is that it literally works. We have reduced a lot of complaints after switching to Sophos."
  • "There is room for improvement in terms of stability and updates."

What is our primary use case?

We use it just for antivirus detection. There was a facility where you could send a fake email to find out who clicked on these links. So this option is not available. We just have a simple NDR.

What is most valuable?

The most valuable feature is that it literally works. We have reduced a lot of complaints after switching to Sophos. Because we had Bitdefender, it was also good, and we could not find it to renew it.

What needs improvement?

There is room for improvement in terms of stability and updates. Updates, like if someone does not turn on the computer for six months, and then it gets expired, then you have to manually remove it and then reinstall it.

For how long have I used the solution?

I have been using this solution for five years now. We use the latest version. 

What do I think about the stability of the solution?

I would rate the stability a nine out of ten. It is a stable solution. There is no problem at all in the cloud. 

Sometimes we cannot rate stability a ten out of ten because, you know, there are some updates. If it doesn't happen, then you have to uninstall it and then reinstall it. If you're working in remote locations, you cannot do it easily. Then you have to ask someone to do it manually. It's something we can't do that much.

What do I think about the scalability of the solution?

The solution is extensively used. We began with 300 users and then 1800 users. And now, we have around 3,000 end-users using this solution. So, we have plans to increase the further usage. 

How are customer service and support?

I contacted support once for license activation. 

Which solution did I use previously and why did I switch?

In Bitdefender, we used to have a virtual machine, and there was only one engineer available who was in Kuwait. And if he's busy, you cannot do anything. There were some technical problems also. But since we are using Intercept X Endpoint cloud-based solution, everything goes smoothly. 

How was the initial setup?

The initial setup is really simple. We install it in our active directory. It can be set up automatically.

It took two minutes, maybe even less than two minutes, and then it keeps updating on the back end. So users do not feel anything.

What about the implementation team?

We have been working in IT for the last twenty years, so we know how to do this.

I'm also the network administrator, so we use an active directory to deploy it, and we got it integrated into our Windows Solution image. It gets updated, and it gets installed by itself.

What was our ROI?

It's good. Not that expensive.

What's my experience with pricing, setup cost, and licensing?

We go for the three years plan.

What other advice do I have?

I recommend it to everyone. It's easy to use. It's still strong and light on the computer. It doesn't take a lot of memory. The feature I found valuable is that it works for signature antivirus as well as finding signatures.

Overall, I would rate the solution a nine out of ten. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2026
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.